Skip to content
Merged
Changes from 1 commit
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Next Next commit
#3784 Document Unused Tokens
So we have the names somewhere before deleting it. Just in case we
need to restore them.

Signed-off-by: Sven Strittmatter <sven.strittmatter@iteratec.com>
  • Loading branch information
Weltraumschaf committed Sep 18, 2026
commit 167e972fdde1be53c30d59fe6f531b6df33d815f
21 changes: 13 additions & 8 deletions documentation/docs/contributing/project-management.md
Original file line number Diff line number Diff line change
Expand Up @@ -35,14 +35,19 @@ The website and documentation is based on [Docusaurus](https://docusaurus.io/) a

### GitHub Secrets

- **`DOCKER_NAMESPACE`** — Namespace for the Docker images. For the main repository this is *securecodebox*.
- **`DOCKER_USERNAME`** — Username used to push Docker images.
- **`DOCKER_TOKEN`** — Token that enables the CI to push Docker images.
- **`GPG_COMMITS_PASSPHRASE`** — GPG passphrase for the secureCodeBoxBot.
- **`GPG_COMMITS_PRIVATE_KEY`** — GPG private key for the secureCodeBoxBot.
- **`SCB_BOT_DOCU_ROULETTE_TOKEN`** — GitHub token for the documentation roulette (needs `org:read` permission).
- **`SCB_BOT_USER_TOKEN`** — GitHub token for the secureCodeBoxBot.
- **`SONAR_TOKEN`** — Token for SonarCloud.
- `CC_TEST_REPORTER_ID`: 🤷‍♂️ Not found in any repo nor password manager.
Comment thread
Weltraumschaf marked this conversation as resolved.
Outdated
- `DOCKER_NAMESPACE`: Namespace for the DockerHub images. For the main repository this is *securecodebox*.
- `DOCKER_PASSWORD`: 🤷‍♂️ Not found in any repo nor password manager.
Comment thread
Weltraumschaf marked this conversation as resolved.
Outdated
- `DOCKER_TOKEN`: Token that enables the CI to push images to DockerHub.
- `DOCKER_USERNAME`: Username used to push images to DockerHub.
- `GPG_COMMITS_PASSPHRASE`: GPG passphrase for the secureCodeBoxBot used to sign Maven releases.
- `GPG_COMMITS_PRIVATE_KEY`: GPG private key for the secureCodeBoxBot used to sign Maven releases.
- `HELM_REGISTRY_PASSWORD`: 🤷‍♂️ Not found in any repo nor password manager.
- `HELM_REGISTRY_USERNAME`: 🤷‍♂️ Not found in any repo nor password manager.
Comment thread
Weltraumschaf marked this conversation as resolved.
Outdated
- `PAT_WITH_ADMIN`: 🤷‍♂️ Not found in any repo nor password manager.
Comment thread
Weltraumschaf marked this conversation as resolved.
Outdated
- `SCB_BOT_DOCU_ROULETTE_TOKEN`: GitHub token for the documentation roulette (needs `org:read` permission).
- `SCB_BOT_USER_TOKEN`: GitHub token for the secureCodeBoxBot.
- `SONAR_TOKEN`: Token for SonarCloud code analysis in CI.

## Teams

Expand Down