Coding Attested Ephemeral CI Runners: Provisioning TPM/SGX-attested, On-Demand Build Workers via GitOps Yoo plus 2026-01-12 0 The term “Attested Ephemeral CI Runners” describes on-demand build workers that prove their identity and integrity using... Read More Read more about Attested Ephemeral CI Runners: Provisioning TPM/SGX-attested, On-Demand Build Workers via GitOps
Coding Shadow Dependency Hygiene: Detecting and Mitigating Malicious Transitive Packages at Build Time Yoo plus 2026-01-01 0 Shadow Dependency Hygiene is an essential discipline for modern software teams that want to detect malicious transitive... Read More Read more about Shadow Dependency Hygiene: Detecting and Mitigating Malicious Transitive Packages at Build Time
Coding Pipeline Provenance: Producing Cryptographically Verifiable CI/CD Artifacts Yoo plus 2025-12-29 0 Pipeline provenance and cryptographically verifiable CI/CD artifacts are essential for proving what was built, who built it,... Read More Read more about Pipeline Provenance: Producing Cryptographically Verifiable CI/CD Artifacts