Skip to content

Enable immutable releases #725

@ericcornelissen

Description

@ericcornelissen

Description:
This action should enable immutable releases, just like actions/attest-build-provenance has.

Justification:
To help protect users against potential attacks such as GHSA-mrrh-fwg8-r2c3 by preventing re-pointing (released) tags to different commits.

Are you willing to submit a PR?
n/a

Metadata

Metadata

Assignees

No one assigned

    Labels

    feature requestNew feature or request to improve the current logic

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions