Tabnine CLI GHA Trust Guidance
This guide outlines security configurations and best practices for integrating Tabnine CLI with GitHub Actions (GHA) workflows.
1. Determine If Your Workflow Processes Untrusted Data
Data Trust Level
Required Configuration
2. Workspace Trust in CI
TABNINE_CLI_TRUST_WORKSPACE
TABNINE_CLI_TRUST_WORKSPACEenv:
TABNINE_CLI_TRUST_WORKSPACE: truetabnine --skip-trust --approval-mode plan --prompt "Summarize the changes in this pull request."3. Permissions and Principle of Least Privilege
4. Tool and Command Allowlisting
5. Approval Modes in CI
Mode
Flag
Behavior
6. MCP Servers in CI
Last updated
Was this helpful?
