Skip to content

Set up Immutable github releases #2444

@sakshamgoyal-01

Description

@sakshamgoyal-01

Issues details

Set up the CI pipeline when making a release to make them "Immutable" to prevent git tag hijacks. This makes it safer to use a release version instead of pinning to a full hash.

https://docs.github.com/en/code-security/concepts/supply-chain-security/immutable-releases

I want to be able to run my CI with the pr-agent github action with a version pin instead of a commit hash.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions