ended4월 9일· 1 sources
Astral’s Blueprint for Hardening Open Source CI/CD Pipelines
Ruff·uv 개발사 Astral이 공개한 오픈소스 CI/CD 보안 강화 전략
Why it matters
As supply chain attacks become more sophisticated, Astral shares its rigorous GitHub Actions security protocols to maintain developer trust in tools like Ruff and uv. By strictly limiting dangerous triggers and moving workflows to controlled environments, Astral sets a new standard for open-source project integrity and resilience.
1
Sources
+0
24h
—
Growth
146d
Active
AstralRuffuvCI/CD SecurityGitHub ActionsSupply Chain Attack