Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
colek42
7 months ago
|
parent
|
context
|
favorite
| on:
How to harden GitHub Actions
We just built a new version of the witness run action that tracks the who/what/when/where and why of the GitHub actions being used. It provides "Trusted Telemetry" in the form of SLSA and in-toto attestations.
https://github.com/testifysec/witness-run-action/tree/featur...
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search:
https://github.com/testifysec/witness-run-action/tree/featur...