Skip to content

ci(security): harden docker-publish workflow against untrusted code [skip ci]#9

Merged
gildesmarais merged 1 commit into
mainfrom
ci/harden-ci
May 11, 2026
Merged

ci(security): harden docker-publish workflow against untrusted code [skip ci]#9
gildesmarais merged 1 commit into
mainfrom
ci/harden-ci

Conversation

@gildesmarais
Copy link
Copy Markdown
Member

@gildesmarais gildesmarais commented May 11, 2026

strengthened the security of the docker-publish job by adding an explicit repository check to the if condition. This ensures the workflow only executes for successful pushes to the main branch originating from the official repository.

@gildesmarais gildesmarais merged commit 3c0cbc7 into main May 11, 2026
5 checks passed
@gildesmarais gildesmarais deleted the ci/harden-ci branch May 11, 2026 10:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant