- Issue created by @prudloff
The repository contains a private SSH key: https://git.drupalcode.org/project/commerce_ajaxify/-/blob/1.0.x/drupal_org
Is this intended?
If not, the key should be removed and revoked on every server that accept it.
Active
1.0
Code
It is used for security vulnerabilities which do not need a security advisory. For example, security issues in projects which do not have security advisory coverage, or forward-porting a change already disclosed in a security advisory. See Drupal’s security advisory policy for details. Be careful publicly disclosing security vulnerabilities! Use the “Report a security vulnerability” link in the project page’s sidebar. See how to report a security issue for details.