Skip to content

Add securebuild release jobs - #2114

Merged
divolgin merged 1 commit into
mainfrom
divolgin/add-securebuild-jobs
Aug 19, 2026
Merged

Add securebuild release jobs#2114
divolgin merged 1 commit into
mainfrom
divolgin/add-securebuild-jobs

Conversation

@divolgin

Copy link
Copy Markdown
Member

Description, Motivation and Context

Please include a summary of the change or what problem it solves. Please also include relevant motivation and context.

Adding SecureBuild to release process.

Checklist

  • New and existing tests pass locally with introduced changes.
  • Tests for the changes have been added (for bug fixes / features)
  • The commit message(s) are informative and highlight any breaking changes
  • Any documentation required has been added/updated. For changes to https://troubleshoot.sh/ create a PR here

Does this PR introduce a breaking change?

  • Yes
  • No

@greptile-apps

greptile-apps Bot commented Aug 19, 2026

Copy link
Copy Markdown

Security Review

The new workflow executes an unpinned, unverified executable selected through releases/latest while exposing the SecureBuild API token. How this was verified: Both build jobs download the mutable artifact and then execute it with the token present in their environment and arguments.

Reviews (1): Last reviewed commit: "Add securebuild release jobs" | Re-trigger Greptile

Comment thread .github/workflows/publish-securebuild.yml
Comment thread .github/workflows/publish-securebuild.yml Outdated
@divolgin
divolgin force-pushed the divolgin/add-securebuild-jobs branch from 5cb7472 to a737791 Compare August 19, 2026 15:55
@greptile-apps

greptile-apps Bot commented Aug 19, 2026

Copy link
Copy Markdown

Reviews (2): Last reviewed commit: "Add securebuild release jobs" | Re-trigger Greptile

@divolgin
divolgin merged commit fb82fef into main Aug 19, 2026
24 checks passed
@divolgin
divolgin deleted the divolgin/add-securebuild-jobs branch August 19, 2026 16:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants