chains icon indicating copy to clipboard operation
chains copied to clipboard

Supply Chain Security in Tekton Pipelines

Results 155 chains issues
Sort by recently updated
recently updated
newest added

# Changes While the backwards compatible tag-based attestation method works, it can result in a lot of additional tags being pushed to OCI registries. In order to maintain fewer tags,...

needs-ok-to-test
size/XXL
needs-rebase
do-not-merge/work-in-progress

# Expected Behavior When defining Vault as the KMS we should be able to use JWT Auth as an OIDC login in Vault when signing images and taskruns, by only...

kind/bug

### Feature request Prow will stay around for tide and other helpful services for now, but it will not be available anymore soon to run CI jobs. Please migrate them...

kind/feature

Tekton Chains used to be configured in the dogfooding cluster on GCP to use Google KMS service. All GCP services have been de-provisioned. For posterity, this is the public key...

# Expected Behavior The documentation should be consistent in the way chains authenticate to OCI registry # Actual Behavior Page https://tekton.dev/docs/chains/authentication/ says create secret using secret value as `.dockerconfigjson` ```bash...

kind/bug