udf2457
udf2457
Please add [SLSA provenance ](https://slsa.dev/)to your releases. It is quick and easy to do on on Github: https://github.com/slsa-framework/slsa-github-generator/blob/main/internal/builders/generic/README.md#provenance-for-goreleaser https://goreleaser.com/blog/slsa-generation-for-your-artifacts/#slsa-github-generator Background info: https://docs.sigstore.dev/signing/overview/
Coming to this from the perspective someone used to the `gpg --verify` world and new to `Sigstore`, there is an awful lot of waffle on the signature verification page. A...
Would be nice if there was a way to set infinite timeout, `--timeout=0` exits immediately and `--timeout=-1` is an invalid option (similar for `--count`). This would be useful for a...
Might be worth adding new kid on the block [Bloomberg BlazingMQ](https://bloomberg.github.io/blazingmq/) to the comparison page in the docs.
### Welcome - [X] Yes, I've searched similar issues on GitHub and didn't find any. ### How do you use lego? Binary ### Detailed Description Please add [SLSA provenance ](https://slsa.dev/)to...
At present the [docs for bazel ](https://buf.build/docs/build-systems/bazel/) are written in the context of `WORKSPACE`. `WORKSPACE` is now considered legacy and has been replaced with `bzlmod`. It would be good if...
### Preflight checklist - [X] I could not find a solution in the existing issues, docs, nor discussions. - [X] I agree to follow this project's [Code of Conduct](https://github.com/ory/kratos/blob/master/CODE_OF_CONDUCT.md). -...
It is easier than ever to do in 2024! You can even do it fully-automated via Github Actions, Github OIDC and [Sigstore "keyless" signing](https://docs.sigstore.dev/signing/overview/).
Thanks for your great work on gopenpgp. Please however consider adding OpenPGP smartcard support. In today's cyber security world, such functionality is almost no longer an option. Even more so...
I downloaded [yubihsm2-sdk-2023-01-darwin-amd64.pkg](https://developers.yubico.com/YubiHSM2/Releases/yubihsm2-sdk-2023-01-darwin-amd64.pkg) and the associated sig file from [the website](https://developers.yubico.com/YubiHSM2/Releases/) However its signed by `A8CE167914EEE232B9237B5410CAC4962E03C7CC` which is nowhere to be seen on [the keys page](https://developers.yubico.com/Software_Projects/Software_Signing.html)