Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Feature Request: Release package signing #550

Open
g4jc opened this issue Nov 6, 2016 · 1 comment
Open

Feature Request: Release package signing #550

g4jc opened this issue Nov 6, 2016 · 1 comment

Comments

@g4jc
Copy link

g4jc commented Nov 6, 2016

Hello,
There is currently no way to verify the complete integrity of releases. Please consider signing your releases so that package maintainers can verify the sources prior to packaging.

See here for how-to and complete details:
https://wiki.debian.org/Creating%20signed%20GitHub%20releases

Thank you

@NicoHood
Copy link

NicoHood commented Jan 8, 2017

You can checkout gpgit which explains the requirements for source signing and how to easily accomplish it. it will help you and automate the process of source signing.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

3 participants