Skip to content

Azure.DevOps.Pipelines.Settings.LimitJobAuthorizationScopeForYamlPipelines

github-actions edited this page Oct 21, 2023 · 2 revisions

Azure.DevOps.Pipelines.Settings.LimitJobAuthorizationScopeForYamlPipelines

SYNOPSIS

Project settings should limit job authorization scope for YAML pipelines.

DESCRIPTION

YAML pipelines can be used to deploy to multiple environments. Each environment can be configured to use a different set of resources. Limiting the job authorization scope to the current project will prevent the job from being able to access resources in other projects. This can help prevent accidental access to resources in other projects.

Mininum TokenType: ReadOnly

RECOMMENDATION

Consider limiting the job authorization scope for YAML pipelines to the current project in the project settings.

LINKS

Clone this wiki locally