We wanted to use Baseten for inference. We ended up with admin access to Baseten GitHub repos
Summary
Strix reports a security incident where an old Baseten GitHub token found in a Docker image history granted admin access to multiple Baseten repos. Baseten security fixed the issue promptly, but the post emphasizes the risks of leaked build credentials and the importance of secure CI/CD practices and autonomous security testing.