部署流程写入运行时 .env 时改用 secrets.DEPLOY_DOCKER_ENV,降低敏感配置在变量与日志中的暴露风险。 Made-with: Cursor
This commit is contained in:
@@ -53,7 +53,7 @@ jobs:
|
|||||||
|
|
||||||
mkdir -p deploy/docker
|
mkdir -p deploy/docker
|
||||||
cat > deploy/docker/.env <<EOT
|
cat > deploy/docker/.env <<EOT
|
||||||
${{ vars.DEPLOY_DOCKER_ENV }}
|
${{ secrets.DEPLOY_DOCKER_ENV }}
|
||||||
IMAGE_REPO=${IMAGE_REPO}
|
IMAGE_REPO=${IMAGE_REPO}
|
||||||
IMAGE_TAG=${IMAGE_TAG}
|
IMAGE_TAG=${IMAGE_TAG}
|
||||||
EOT
|
EOT
|
||||||
|
|||||||
Reference in New Issue
Block a user