Github should not disallow/filter branch names. Developers should write (and be be given the tools to) workflows that do not allow command injection.
These protections (WAF for SQL/XSS, branch names for this) will never be enough. The code/logic must be secure, any additional layer is not enough since the actual target must be secured.
Developers will do it if its necessary, and it is. These situations are just proving it is necessary.
untyped strings, untyped strings everywhere
and they're directly executed, with untrusted user input templated in, with full release privileges
the entire thing is insane
to think pypa deprecated pgp offline signing for this...