Skip to content

Can this be used to make signed commits from GHA a-la gitsign? #1722

@webknjaz

Description

@webknjaz

Question

We now have a requirement to have all commits signed in Ansible: https://forum.ansible.com/t/important-github-com-ansible-now-requires-signed-commits/45520/14. This broke a couple of automated workflows that produce commits in GHA. I'm looking for automated signing solutions and thought of perhaps using Sigstore.

@woodruffw could you help me understand if this project (or the respective action) would be usable for signing Git commits from GitHub Actions jobs (provided they run in an OIDC-aware context)?

Metadata

Metadata

Assignees

No one assigned

    Labels

    questionFurther information is requested

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions