Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Build reproducibility #832

Closed
orpheuslummis opened this issue Sep 19, 2022 · 4 comments
Closed

Build reproducibility #832

orpheuslummis opened this issue Sep 19, 2022 · 4 comments
Labels
ci/build This is issue is about the build or CI system, and the administration of it. release Related to release cycle security Related to security

Comments

@orpheuslummis
Copy link
Contributor

Subtasks

@orpheuslummis orpheuslummis added ci/build This is issue is about the build or CI system, and the administration of it. release Related to release cycle security Related to security labels Sep 19, 2022
@orpheuslummis orpheuslummis self-assigned this Sep 19, 2022
@orpheuslummis
Copy link
Contributor Author

a tool like https://github.com/warpfork/warpforge to facilitate reproducible build, or nix

@orpheuslummis
Copy link
Contributor Author

Reproducible builds allow to from a source code and a given environment, reach the same corresponding hash as upstream, to validate that no additional vulnerability or errors have been introduced in the source code or environment. Multiple parties can come to consensus as to the correctness of the build output.

@orpheuslummis
Copy link
Contributor Author

golang/go#57120

@orpheuslummis orpheuslummis removed their assignment Apr 18, 2023
@fredcarle
Copy link
Collaborator

stale

@fredcarle fredcarle closed this as not planned Won't fix, can't repro, duplicate, stale Oct 26, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
ci/build This is issue is about the build or CI system, and the administration of it. release Related to release cycle security Related to security
Projects
None yet
Development

No branches or pull requests

2 participants