You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
As an user,
I want to be assured that all released packages are coming from notable source,
to be able to trust the package I'm adopting into my project.
Setup an NPM provenance for CI that will mark all of our release packages as "✅ Build & signed on GitHub Actions".
Setup an NPM provenance for CI that will mark all of our release packages as "✅ Build & signed on GitHub Actions".
https://www.npmjs.com/package/sigstore#provenance
The text was updated successfully, but these errors were encountered: