-
Notifications
You must be signed in to change notification settings - Fork 72
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Update resource types to use hardened images #4383
Conversation
2c87178
to
c01f85f
Compare
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Make sure to also add the hardened git resource for the staging and production pipelines.
@apburnes Thanks for that review — that was a specific detail I was unsure of. I believe I've addressed all of the |
(There are more in the dev pipeline, but in a PR context, I believe.) |
Not sure which one you mean. cogito is removed and github-pr-resource is added in those pipelines. Do we need git-resource also? |
I think I've addressed every comment except for the following, about which my open question is below:
|
ca9421f
to
5590c02
Compare
Thanks for swinging in on this! |
Noticing I didn't include "(#4384)" in the original commit message, but maybe we can let that be. |
6ec57b1
to
b9c714e
Compare
fb83166
to
84182d9
Compare
Fixes #4384
Changes proposed in this pull request:
security considerations
Replace CI resource types with hardened image