sethmlarson.dev

Archives
Log in
Subscribe
May 2, 2024

Isolating risk in the CPython release process

Today’s report for the Security Developer-in-Residence role includes:

  • Modifying the CPython release process in GitHub Actions to isolate the source artifacts from additional risk.

  • Recordings for my talk and tabletop session at SOSS Community Day NA 2024.

  • Update on mentoring for Google Summer of Code 2024 to add hardened compiler options to CPython.

  • Windows SBOMs are coming with the next CPython releases. 🥳

👉 Read the full article on sethmlarson.dev

Don't miss what's next. Subscribe to sethmlarson.dev:
← Newer Backup Game Boy ROMs and saves on Ubuntu Older → CPython release automation, SBOMs for Windows artifacts coming soon!

Add a comment:

You're not signed in. Posting this comment will subscribe you to this newsletter with the email address you enter below.
Share this email:
Share on Hacker News Share on Reddit Share via email Share on Mastodon Share on Bluesky
sethmlarson.dev
Bluesky
Mastodon
Powered by Buttondown, the easiest way to start and grow your newsletter.