1
0
mirror of synced 2025-12-26 05:02:55 -05:00
Commit Graph

52 Commits

Author SHA1 Message Date
Thomas Boop
3049b5c02f tiny change to remove incorrect whitespace in workflow yaml for oidc (#55440)
Co-authored-by: hubwriter <hubwriter@github.com>
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
2025-04-29 14:30:31 +00:00
Marco Gario
4667ca2ebb Remove beta notice for actions analysis (#55013)
Co-authored-by: Shaikhul Islam <shaikhul@github.com>
2025-04-23 02:10:03 +00:00
Tobias Bieniek
47558ea7e2 security-hardening-with-openid-connect: Add missing comma (#37574)
Co-authored-by: Sharra-writes <sharra-writes@github.com>
2025-04-16 20:22:41 +00:00
Cody Soyland
7bbc276e3f Artifact attestations: update policy-controller version number (#55289)
Signed-off-by: Cody Soyland <codysoyland@github.com>
Co-authored-by: Sarita Iyer <66540150+saritai@users.noreply.github.com>
2025-04-15 20:09:11 +00:00
Kate Catlin
506d3aa811 Update automatic-token-authentication.md (#55278) 2025-04-15 19:32:51 +00:00
Ben Ahmady
cf2975559d Scannability: 'About self-hosted runners' article (#54175)
Co-authored-by: Kevin Heis <heiskr@users.noreply.github.com>
Co-authored-by: Siara <108543037+SiaraMist@users.noreply.github.com>
2025-04-10 15:55:12 +00:00
Cam McHenry
1d7c2feb80 Remove mentions of Projects (classic) and associated features (#55017) 2025-04-10 12:57:40 +00:00
Josh Johanning
196b84e4fd docs: add content on validating sbom attestations (#54918)
Co-authored-by: Sam Browning <106113886+sabrowning1@users.noreply.github.com>
Co-authored-by: Joe Clark <31087804+jc-clark@users.noreply.github.com>
2025-03-20 22:31:25 +00:00
Felicity Chapman
cd8bf2a292 GHAS unbundling: review and update non-UI instances of "code security" (#54699) 2025-03-06 17:13:08 +00:00
Ben Ahmady
fbab88adaf Scannability: 'Using secrets in GitHub Actions' article (#54261)
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
Co-authored-by: Siara <108543037+SiaraMist@users.noreply.github.com>
Co-authored-by: Kevin Heis <heiskr@users.noreply.github.com>
2025-03-06 15:38:50 +00:00
Morgan Joyce
92f46ed38c Fix: Correct Issue Reference to Pull Request in Actions Security Docs (#36519) 2025-02-26 10:12:04 +00:00
Pantelis
d0e866ea8c Clarify structured secrets (#54069)
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
Co-authored-by: hubwriter <hubwriter@github.com>
2025-01-23 11:49:30 +00:00
mc
615b34e8db Hack week 2025: remove unneeded FBV instances (22) (#54017) 2025-01-21 07:43:40 +00:00
mc
24436eba94 Hack week 2025: remove unneeded FBV instances (14) - Actions (#53983)
Co-authored-by: Felicity Chapman <felicitymay@github.com>
2025-01-20 10:59:17 +00:00
Isaac Brown
b2acf2432b Remove product_name from actions directory (#53904)
Co-authored-by: Vanessa <vgrl@github.com>
2025-01-17 11:46:12 +00:00
Josh Soref
409e165477 Promote warning about unspecified permissions to a call-out (#35967)
Co-authored-by: Alex Nguyen <150945400+nguyenalex836@users.noreply.github.com>
2025-01-16 20:04:05 +00:00
mc
87776f2334 Hack week 2025: remove unneeded FBV instances (5) - Actions (#53895) 2025-01-15 09:05:18 +00:00
Cody Soyland
a3d8090062 Bump policy-controller version referenced by documentation (#53824)
Signed-off-by: Cody Soyland <codysoyland@github.com>
2025-01-09 16:15:15 +00:00
Ryosuke Nakayama
cc2b148b11 List required OIDC endpoints for Google Cloud Platform (#53760)
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
Co-authored-by: Sunbrye Ly <56200261+sunbrye@users.noreply.github.com>
2025-01-06 20:53:58 +00:00
Cody Soyland
589acad8fc Document image verification in artifact attestations K8s guide (#53703)
Signed-off-by: Cody Soyland <codysoyland@github.com>
Co-authored-by: Joe Clark <31087804+jc-clark@users.noreply.github.com>
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
2025-01-06 10:57:16 +00:00
Marco Gario
bc02699a2e Add Actions as supported language (#53606)
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
Co-authored-by: Sarita Iyer <66540150+saritai@users.noreply.github.com>
Co-authored-by: Andrew Eisenberg <aeisenberg@github.com>
2024-12-17 20:25:41 +00:00
Jam Balaya
ab63402e2b Bump actions/attest-build-provenance GitHub Actions (#35635)
Co-authored-by: Alex Nguyen <150945400+nguyenalex836@users.noreply.github.com>
2024-12-12 20:47:47 +00:00
Filipe Casal
cc349a7664 Add missing space to security-hardening-for-github-actions.md (#35638)
Co-authored-by: Alex Nguyen <150945400+nguyenalex836@users.noreply.github.com>
2024-12-12 17:18:35 +00:00
Ashley
0fd09b3f11 [Remove Quotes] removed quotations from links in files in content/actions (#53540)
Co-authored-by: Anne-Marie <102995847+am-stead@users.noreply.github.com>
2024-12-12 11:06:10 +00:00
Siara
b5e07c2f18 [Bug] Fix confusing link text (#53536) 2024-12-09 20:07:28 +00:00
Ben Ahmady
d59e4e8030 Improve clarity around "dependency review" and "dependency review action" (#53273)
Co-authored-by: Anne-Marie <102995847+am-stead@users.noreply.github.com>
2024-12-04 09:14:37 +00:00
Artur Kordowski
56a5520271 Fix text formatting with colon - part 1 (#35432)
Co-authored-by: Alex Nguyen <150945400+nguyenalex836@users.noreply.github.com>
2024-11-26 19:33:30 +00:00
Artur Kordowski
b11bdece6f Remove unnecessary spaces between words - part 1 (#35380)
Co-authored-by: Alex Nguyen <150945400+nguyenalex836@users.noreply.github.com>
2024-11-21 19:50:30 +00:00
Artur Kordowski
ad27008bb9 Remove duplicate words (#35377)
Co-authored-by: Alex Nguyen <150945400+nguyenalex836@users.noreply.github.com>
2024-11-21 17:31:53 +00:00
Tingluo Huang
0063858f75 Doc how to escape ':' in OIDC 'sub' claim. (#53080)
Co-authored-by: Steve-Glass <84886334+Steve-Glass@users.noreply.github.com>
Co-authored-by: Sophie <29382425+sophietheking@users.noreply.github.com>
2024-11-20 14:23:03 +00:00
Cody Soyland
7353a87837 Bump documented version of policy-controller to v0.10.0-github9 (#53167)
Signed-off-by: Cody Soyland <codysoyland@github.com>
2024-11-19 13:34:35 +00:00
Cody Soyland
200eed6859 Bump documented version of trust-policies helm chart (#53142)
Signed-off-by: Cody Soyland <codysoyland@github.com>
2024-11-18 15:58:52 +00:00
Artur Kordowski
6855f29729 Fix inconsistent alerts by using the markdown notation - part 1 (#35220)
Co-authored-by: Alex Nguyen <150945400+nguyenalex836@users.noreply.github.com>
2024-11-07 19:46:37 +00:00
Ashley
3b27662c5d Ran white space linter on content (#52996) 2024-11-06 18:01:37 +00:00
Joe Clark
75f3cce197 October 28-30: GitHub Universe 2024 docs-internal megabranch (#52491)
Co-authored-by: isaacmbrown <isaacmbrown@github.com>
Co-authored-by: Hector Alfaro <hectorsector@github.com>
Co-authored-by: Isaac Brown <101839405+isaacmbrown@users.noreply.github.com>
Co-authored-by: hubwriter <hubwriter@github.com>
Co-authored-by: Vanessa <vgrl@github.com>
Co-authored-by: Christopher Nguyen <91625426+nguyen-dows@users.noreply.github.com>
Co-authored-by: Sophie <29382425+sophietheking@users.noreply.github.com>
Co-authored-by: Felicity Chapman <felicitymay@github.com>
Co-authored-by: Andrew Eisenberg <aeisenberg@github.com>
Co-authored-by: Ben Ahmady <32935794+subatoi@users.noreply.github.com>
Co-authored-by: Sam Browning <106113886+sabrowning1@users.noreply.github.com>
Co-authored-by: David Staheli <1767415+davidstaheli@users.noreply.github.com>
Co-authored-by: Sarita Iyer <66540150+saritai@users.noreply.github.com>
Co-authored-by: sunbrye <sunbrye@github.com>
Co-authored-by: Tim Rogers <timrogers@github.com>
Co-authored-by: Felix Guntrip <stevecat@github.com>
Co-authored-by: Sunbrye Ly <56200261+sunbrye@users.noreply.github.com>
Co-authored-by: James Fletcher <42464962+jf205@users.noreply.github.com>
Co-authored-by: Rachael Rose Renk <91027132+rachaelrenk@users.noreply.github.com>
Co-authored-by: Jules <19994093+jules-p@users.noreply.github.com>
Co-authored-by: Laura Coursen <lecoursen@github.com>
Co-authored-by: Jules Porter <jules-p@users.noreply.github.com>
Co-authored-by: Devraj Mehta <devm33@github.com>
Co-authored-by: Kate Studwell <katestud@github.com>
Co-authored-by: Katherine Oelsner <49968061+octokatherine@users.noreply.github.com>
Co-authored-by: Rachael Sewell <rachmari@github.com>
Co-authored-by: Tim Rogers <me@timrogers.co.uk>
Co-authored-by: Arfon Smith <arfon@users.noreply.github.com>
2024-10-29 08:40:06 -07:00
Shotaro Kohama
50085e6612 Update the tag of aws-actions/configure-aws-credentials (#34809)
Co-authored-by: Alex Nguyen <150945400+nguyenalex836@users.noreply.github.com>
2024-10-15 16:20:14 +00:00
Cody Soyland
53036e5bc6 Bump version number of Artifact Attestations Policy Controller to v0.10.0-github8 (#52617)
Signed-off-by: Cody Soyland <codysoyland@github.com>
2024-10-11 11:17:09 +00:00
Dan Hardej
566209cdda Add gated feature conditions for artefact attestations (#52285)
Co-authored-by: Ben Ahmady <32935794+subatoi@users.noreply.github.com>
2024-10-07 08:25:47 +00:00
Ashish Keshan
7c49068bb8 [Content Linter Rule] Third Party Action References Must Use SHA (#52282)
Co-authored-by: Rachael Sewell <rachmari@github.com>
Co-authored-by: Ben Ahmady <32935794+subatoi@users.noreply.github.com>
Co-authored-by: Felicity Chapman <felicitymay@github.com>
2024-09-27 17:54:59 +00:00
Vanessa
e340726089 Remove redundant versioning from admin, actions articles (#52425) 2024-09-26 21:57:12 +00:00
Ben Ahmady
272a9a35c6 Remove redundant 'pat-v2' versioning (#52362) 2024-09-25 12:58:24 +00:00
Cody Soyland
954890b588 Update docs about enforcing Artifact Attestations with Kubernetes (#52353)
Signed-off-by: Cody Soyland <codysoyland@github.com>
Co-authored-by: Phill MV <phillmv@github.com>
Co-authored-by: Joe Clark <31087804+jc-clark@users.noreply.github.com>
Co-authored-by: jc-clark <jc-clark@github.com>
2024-09-23 22:00:11 +00:00
Rachael Sewell
e94189eb59 fix yaml example code (#52397) 2024-09-23 18:11:57 +00:00
Hossein Abbasi
30e50159d1 Use consistent language for placeholders in AWS OpenID setup (#34525)
Co-authored-by: itecompro <16090309+itecompro@users.noreply.github.com>
Co-authored-by: Alex Nguyen <150945400+nguyenalex836@users.noreply.github.com>
2024-09-16 15:21:16 +00:00
Hossein Abbasi
cdf24f8566 Use consistent format for placeholders in Open ID section (#34454)
Co-authored-by: itecompro <16090309+itecompro@users.noreply.github.com>
Co-authored-by: Alex Nguyen <150945400+nguyenalex836@users.noreply.github.com>
2024-09-02 15:11:31 +00:00
Jan Brasna
2f12ab507a Remove id-token: read from available permissions (#34306)
Co-authored-by: Joe Clark <31087804+jc-clark@users.noreply.github.com>
Co-authored-by: Josh Gross <joshmgross@github.com>
2024-08-20 19:28:50 +00:00
hubwriter
0edb82112f Actions bug fixes (#52021) 2024-08-16 06:24:28 +00:00
Sunbrye Ly
5db69165e9 Update the Actions Quickstart article (#51906) 2024-08-15 15:41:55 +00:00
Zach Renner
dea54aba52 Correct and clarify OIDC subject claim customization (#51789)
Co-authored-by: Sophie <29382425+sophietheking@users.noreply.github.com>
2024-08-15 07:04:34 +00:00
Hector Alfaro
779ee058b7 Put back "Relocate articles into a new Security category" (#51928)
Co-authored-by: SiaraMist <siaramist@github.com>
2024-08-06 14:45:21 +00:00