experimental_reals: make psumZ rewrite direction explicit #296
Triggered via pull request
July 28, 2026 07:27
JasonGross
opened
#2054
Status
Failure
Total duration
19s
Artifacts
–
nix-action-9.0-master.yml
on: pull_request_target
rocq-core
7s
mathcomp-analysis-single
mathcomp-experimental-reals
0s
mathcomp-infotheo
0s
Annotations
1 error
|
rocq-core
Refusing to check out fork pull request code from a 'pull_request_target' workflow. This workflow runs with the base repository's GITHUB_TOKEN, secrets, default-branch cache scope, and runner access. Fetching and executing a fork's code in that trusted context commonly leads to "pwn request" vulnerabilities. To opt in, review the risks at https://gh.io/securely-using-pull_request_target and set 'allow-unsafe-pr-checkout: true' on the actions/checkout step.
|