Bazel Rules

Поделиться
HTML-код
  • Опубликовано: 28 сен 2024
  • With a 700+% YoY increase in supply chain attacks it becomes paramount for build systems to provide safety guarantees across the entire software development life cycle. One solution for this is to use the SLSA framework, to generate provenance for each build artifact, tying the artifact with the identity of the user building it and the (automated!) workflow used in the build process. This also enables testing that the builds are reproducible, increasing confidence that no backdoors/malware have been embedded during the build process. We will talk about a solution that would automatically add SLSA provenance to any project that builds using Bazel and GitHub Actions.
    Speakers: Mihai Maruseac, Noah Elzner
    Watch all BazelCon 2023 sessions here → goo.gle/BazelC...
    Subscribe to Google Open Source → goo.gle/GOpenS...
    #BazelCon2023

Комментарии • 1

  • @GoogleOpenSource
    @GoogleOpenSource  10 месяцев назад

    🔔 Subscribe to Google Open Source → goo.gle/GOpenSource