Skip to content
Navigation Menu
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Copilot app
Direct agents from issue to merge
MCP Registry
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Code Quality
Enforce quality at merge
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
View all resources
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
GitHub Stars
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search
/
Sign in
Sign up
Appearance settings
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
Uh oh!
There was an error while loading.
Please reload this page
.
agentrust-io
/
ca2a
Public
Notifications
You must be signed in to change notification settings
Fork
12
Star
9
Code
Issues
6
Pull requests
0
Actions
Projects
Security and quality
1
Insights
Additional navigation options
Code
Issues
Pull requests
Actions
Projects
Security and quality
Insights
Actions: agentrust-io/ca2a
Actions
All workflows
Workflows
CI
CI
CodeQL
CodeQL
Contributor reputation check
Contributor reputation check
Dependabot Updates
Dependabot Updates
Dependency Graph
Dependency Graph
Docker publish
Docker publish
Docs
Docs
Limitations parity
Limitations parity
OpenSSF Scorecard
OpenSSF Scorecard
pages-build-deployment
pages-build-deployment
Show more workflows...
Management
Caches
Deployments
Contributor reputation check
Contributor reputation check
Actions
Loading...
Loading
Sorry, something went wrong.
Uh oh!
There was an error while loading.
Please reload this page
.
will be ignored since log searching is not yet available
Show workflow options
Create status badge
Create status badge
Loading
Uh oh!
There was an error while loading.
Please reload this page
.
contributor-check.yml
will be ignored since log searching is not yet available
161 workflow runs
161 workflow runs
Event
Filter by Event
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching events.
Status
Filter by Status
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching statuses.
Branch
Filter by Branch
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching branches.
Actor
Filter by Actor
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching users.
test(conformance): separate ACTION provenance, authorization, and controller reporting
Contributor reputation check
#161:
Pull request
#162
opened by
Bashirloyan
13s
13s
View #162
View workflow file
feat(cli): let ca2a start demand caller attestation from config
Contributor reputation check
#160:
Pull request
#161
opened by
Susanpdl
26s
26s
View #161
View workflow file
ca2a start cannot turn on mutual attestation or a caller verifier
Contributor reputation check
#159:
Issue
#160
opened by
Susanpdl
22s
22s
View workflow file
fix(canonical): bound integers to the RFC 8785 safe domain
Contributor reputation check
#158:
Pull request
#159
opened by
imran-siddique
1s
1s
View #159
View workflow file
fix(deps): keep a vulnerable cryptography out of the AGT lock entirely
Contributor reputation check
#157:
Pull request
#158
opened by
imran-siddique
1s
1s
View #158
View workflow file
fix: recognize announced repository maintainers as code owners
Contributor reputation check
#156:
Pull request
#157
opened by
imran-siddique
1s
1s
View #157
View workflow file
ci: install CI dependencies from hash-pinned locks
Contributor reputation check
#155:
Pull request
#156
opened by
imran-siddique
1s
1s
View #156
View workflow file
ci: add actionlint and a test-environment guard
Contributor reputation check
#154:
Pull request
#155
opened by
imran-siddique
8s
8s
View #155
View workflow file
docs: consolidate reader journey and page-by-page audit fixes
Contributor reputation check
#153:
Pull request
#154
opened by
imran-siddique
2s
2s
View #154
View workflow file
docs: give delegation readers a complete verifiable first example
Contributor reputation check
#152:
Pull request
#153
opened by
imran-siddique
1s
1s
View #153
View workflow file
fix(security): pin actions to SHAs, add token floor, stop tag interpolation
Contributor reputation check
#151:
Pull request
#152
opened by
imran-siddique
1s
1s
View #152
View workflow file
test(a2a): exercise official SDK JSON-RPC loopback
Contributor reputation check
#150:
Pull request
#151
opened by
noah-ing
23s
23s
View #151
View workflow file
What authority-safety invariant does the delegation chain add beyond DPoP + strict attenuation?
Contributor reputation check
#149:
Issue
#150
opened by
ngallo
27s
27s
View workflow file
fix(tpm): preserve signature algorithm metadata
Contributor reputation check
#148:
Pull request
#149
opened by
noah-ing
21s
21s
View #149
View workflow file
feat(ci): vouch first-time contributors, and say the rule about understanding
Contributor reputation check
#147:
Pull request
#148
opened by
imran-siddique
1s
1s
View #148
View workflow file
chore(deps): Bump github/codeql-action from 4.37.8 to 4.37.9
Contributor reputation check
#146:
Pull request
#147
opened by
dependabot
Bot
1s
1s
View #147
View workflow file
chore(deps): Update pymdown-extensions requirement from >=11.0.1 to >=11.0.2
Contributor reputation check
#145:
Pull request
#146
opened by
dependabot
Bot
2s
2s
View #146
View workflow file
chore(deps): Bump anchore/sbom-action from 0.24.0 to 0.24.2
Contributor reputation check
#144:
Pull request
#145
opened by
dependabot
Bot
1s
1s
View #145
View workflow file
Separate evidence status from ACTION outcome reporting
Contributor reputation check
#143:
Issue
#144
opened by
Bashirloyan
15s
15s
View workflow file
fix(transport): carry hardware attestation evidence over the reference wire codec
Contributor reputation check
#142:
Pull request
#143
opened by
rajnisht7
27s
27s
View #143
View workflow file
fix(ci): pin sbom.yml actions to SHA and scope permissions to the job
Contributor reputation check
#141:
Pull request
#142
opened by
rajnisht7
14s
14s
View #142
View workflow file
docs: SEV-SNP and TDX collection validated on real silicon
Contributor reputation check
#140:
Pull request
#141
opened by
imran-siddique
1s
1s
View #141
View workflow file
fix(examples): pin the trusted root in the cross-operator demo, and stop it dying on cp1252
Contributor reputation check
#139:
Pull request
#140
opened by
imran-siddique
1s
1s
View #140
View workflow file
feat(attestation): appraise SEV-SNP PLATFORM_INFO against an explicit policy
Contributor reputation check
#138:
Pull request
#139
opened by
imran-siddique
1s
1s
View #139
View workflow file
chore(deps): Bump actions/checkout from 4 to 7
Contributor reputation check
#137:
Pull request
#138
opened by
dependabot
Bot
1s
1s
View #138
View workflow file
Previous
1
2
3
4
5
6
7
Next
You can’t perform that action at this time.