Skip to content
This repository has been archived by the owner on Aug 15, 2024. It is now read-only.

VOTE-853: Remove font demo files and prevent future commits #984

Merged
merged 1 commit into from
Mar 11, 2024

Conversation

daniel-crowder
Copy link
Contributor

@daniel-crowder daniel-crowder commented Mar 11, 2024

VOTE-853
Addressing security scan alerts; remove any demo files from the fonts directory as they have non-secure script inclusions (non-https/untrusted source). Prevent such files from being added to the repository via .gitignore.

Testing:

  1. Locally, create any file in the /assets directory ending with "demo.html".
  2. Confirm that the new file does not appear as a new file when running git status

Once merged...
Confirm that any scanning alerts that reference /assets/fonts/*/*demo.html files are resolved once merged.
https://github.com/usagov/vote-gov/security/code-scanning

@daniel-crowder daniel-crowder changed the title : Remove font demo files and prevent future commits VOTE-853: Remove font demo files and prevent future commits Mar 11, 2024
@rayestrada rayestrada merged commit cf76481 into staging Mar 11, 2024
6 checks passed
@rayestrada rayestrada deleted the feature/vote-853-exclude-demo-font-files branch March 12, 2024 23:14
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants