Why Nostr? What is Njump?
2024-06-03 12:15:13

dethos on Nostr: "GitHub recommends to pin an Action to a full length commit SHA as it is currently ...

"GitHub recommends to pin an Action to a full length commit SHA as it is currently the only way to use an Action as an immutable release.

Still, only 2% of GitHub repositories fully embrace this security best practice!"

https://pin-gh-actions.kammel.dev/

#security #github #githubactions #supplychain
Author Public Key
npub1c86s34sfthe0yx4dp2sevkz2njm5lqz0arscrkhjqhkdexn5kuqqtlvmv9