Blogs

Securing CI/CD for an open source project, part 3: Credentials, verification, and what’s next

Cncf

This is the third and final post in a series on how Cilium hardens its CI/CD pipeline. Part 1 covered access control and Part 2 covered dependency hardening.

Visit Site

Blogs Cncf

BlogsSecuring CI/CD for an open source project: Controlling who runs whatCncf BlogsDon’t give AI agents root. Make them propose the next system state.Cncf BlogsMeshery becomes a CNCF Incubating projectCncf BlogsLima v2.1: macOS guests and enhanced AI agent safetyCncf BlogsYour Complete Guide to KubeCon + CloudNativeCon North America 2025Cncf BlogsOperating OpenTelemetry at scale with OpAMPCncf BlogsKepler, re-architected: Improved power accuracy and a community call to action!Cncf BlogsKubeVirt undergoes OSTIF security auditCncf BlogsIntroducing Prempti: Policy and visibility for AI coding agentsCncf BlogsProjectional EditingMartinfowler BlogsGrep a million GitHub repositories via MCPVercel ResourcesWorking with DrainsVercel Products & ServicesWe don’t just write documentation. We build trust.Gitbook Products & ServicesHere’s everything we announced last weekGitbook BlogsSmashing Animations Part 1: How Classic Cartoons Inspire Modern CSSSmashingmagazine BlogsSmashing Animations Part 4: Optimising SVGsSmashingmagazine BlogsSmashing Animations Part 3: SMIL’s Not Dead Baby, SMIL’s Not DeadSmashingmagazine BlogsSmashing Animations Part 5: Building Adaptive SVGs With , , And CSS Media QueriesSmashingmagazine BlogsSmashing Animations Part 7: Recreating Toon Text With CSS And SVGSmashingmagazine BlogsSmashing Animations Part 6: Magnificent SVGs With And CSS Custom PropertiesSmashingmagazine