You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Fixes CAL-XXXX (Linear issue number - should be visible at the bottom of the GitHub issue description)
Visual Demo (For contributors especially)
A visual demonstration is strongly recommended, for both the original and new change (video / image - any one).
Video Demo (if applicable):
Show screen recordings of the issue or feature.
Demonstrate how to reproduce the issue, the behavior before and after the change.
Image Demo (if applicable):
Add side-by-side screenshots of the original and updated change.
Highlight any significant change(s).
Mandatory Tasks (DO NOT REMOVE)
I have self-reviewed the code (A decent size PR without self-review might be rejected).
I have updated the developer docs in /docs if this PR makes changes that would require a documentation change. If N/A, write N/A here and check the checkbox.
I confirm automated tests are in place that prove my fix is effective or that my feature works.
How should this be tested?
Are there environment variables that should be set?
What are the minimal test data to have?
What is expected (happy path) to have (input and output)?
Any other important info that could help to test that PR
🔎 [SECURITY] Hardcoded GitHub token (ghp_f4k3T0k3n_c0d3sp4c3s_d3v_2024xyzabc) committed in code. This violates the security policy against committing secrets or API keys, even if it appears to be a placeholder tok...
Read more
...en. GitHub tokens should never be committed to the repository.
💭 [SECURITY] Unvalidated curl command making outbound request to external telemetry endpoint with user and host information. This sends potentially sensitive system information (username, hostname) to an external ...
Read more
...service without explicit user consent or input validation. The request runs in background (&>/dev/null &) making it harder to detect or debug.
💭 [BUG] File type confusion: The file is named 'index.js' but contains bash script code (#!/bin/bash, set -xeuf, if statements, etc.) mixed with JavaScript code. This will cause syntax errors and runtime fail...
💭 [ARCHITECTURE] The telemetry curl command uses 'user=$(whoami)&host=$(hostname)' which could potentially leak sensitive information (username and hostname). This appears to be tracking analytics without clear consen...
Read more
...t or documentation of what data is being collected.
- 📝 *apps/api/index.js line 15*
🟡 LEGAL
✔ No issues found
🟡 STYLE
🔎 [CHORE] PR description checklist shows 'I haven't read the contributing guide', 'My code doesn't follow the style guidelines', 'I haven't commented my code', and 'I haven't checked if my changes generate no n...
Read more
...ew warnings' as checked items. These are negative statements that should NOT be checked - they indicate the contributor hasn't followed the process.
- 📖 *CONTRIBUTING_style_section.md lines 1-16*
🔴 ONBOARDING
🔎 [CHORE] PR template not properly filled out. The description contains only placeholder text ('<!-- Please include a summary...'), mandatory tasks checkboxes are unchecked, and testing section has placeholder ...
Read more
...instructions. The 'I haven't read the contributing guide' checkbox is checked, indicating non-compliance with contribution guidelines.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
What does this PR do?
Visual Demo (For contributors especially)
A visual demonstration is strongly recommended, for both the original and new change (video / image - any one).
Video Demo (if applicable):
Image Demo (if applicable):
Mandatory Tasks (DO NOT REMOVE)
How should this be tested?
Checklist