Commit 4ca5e1f
Clarify Dependabot IP allow list bypass behavior
Add a warning note that Dependabot runs on standard GitHub-hosted
runners may succeed despite an IP allow list being enabled, and that
this behavior is not guaranteed or supported.
This addresses customer confusion documented in
github/enterprise-primitives#5258 where a Dependabot run succeeded
on a GitHub-hosted runner while the organization IP allow list was
enabled.
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>1 parent 0fa7c5f commit 4ca5e1f
1 file changed
Lines changed: 10 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
0 commit comments