dev
Thread
Date
Earlier messages
Later messages
Messages by Date
2026/01/16
Re: [I] Improve JWT secret key management - increase size and require configuration (tooling-trusted-releases)
via GitHub
2026/01/16
Re: [I] Increase JWT token ID (jti) entropy from 64 to 128 bits (tooling-trusted-releases)
via GitHub
2026/01/16
Re: [I] Increase JWT token ID (jti) entropy from 64 to 128 bits (tooling-trusted-releases)
via GitHub
2026/01/16
Re: [I] Add issuer and audience claims to JWT tokens (tooling-trusted-releases)
via GitHub
2026/01/16
Re: [I] Add issuer and audience claims to JWT tokens (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Narrow exception handling in GitHub OIDC verification (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Create SECURITY.md and security documentation (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Escape database values before writing to database (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Implement file type/content validation for uploads (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Add upper limit to email thread message processing (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Configure request timeouts to prevent slowloris attacks (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Enable CPU and memory limits for worker processes (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Implement structured logging for API access (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Create centralized HTTP client with explicit TLS configuration (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Notify users when authentication credentials change (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Use generic error messages to prevent user enumeration (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Hide stack traces from error pages in production (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Add Strict-Transport-Security (HSTS) header (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Configure session cookie security attributes (Secure, HttpOnly, SameSite) (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Add issuer and audience claims to JWT tokens (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Improve JWT secret key management - increase size and require configuration (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Increase JWT token ID (jti) entropy from 64 to 128 bits (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Remove hardcoded authorization bypass for tooling committee (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Move admin user list to LDAP/external configuration (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Enforce MAX_CONTENT_LENGTH for upload size limits (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Implement log injection prevention (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Implement rate limiting on authentication endpoints (tooling-trusted-releases)
via GitHub
2026/01/16
Re: [PR] Bump pyasn1 from 0.6.1 to 0.6.2 (tooling-trusted-releases)
via GitHub
2026/01/16
Re: [PR] Bump pyasn1 from 0.6.1 to 0.6.2 (tooling-trusted-releases)
via GitHub
2026/01/16
[PR] Bump pyasn1 from 0.6.1 to 0.6.2 (tooling-trusted-releases)
via GitHub
2026/01/16
[I] Update `notes` (tooling-trusted-releases)
via GitHub
2026/01/16
Re: [PR] Bump pynacl from 1.6.0 to 1.6.2 (tooling-trusted-releases)
via GitHub
2026/01/16
Re: [PR] Bump pynacl from 1.6.0 to 1.6.2 (tooling-trusted-releases)
via GitHub
2026/01/16
[PR] Bump pynacl from 1.6.0 to 1.6.2 (tooling-trusted-releases)
via GitHub
2026/01/16
Re: [PR] Migrate state files with extensive checks (tooling-trusted-releases)
via GitHub
2026/01/16
Re: [PR] Migrate state files with extensive checks (tooling-trusted-releases)
via GitHub
2026/01/16
Re: [PR] Migrate state files with extensive checks (tooling-trusted-releases)
via GitHub
2026/01/16
[GH] Migrate state files with extensive checks (tooling-trusted-releases)
via GitHub
2026/01/16
[GH] Migrate state files with extensive checks (tooling-trusted-releases)
via GitHub
2026/01/16
[PR] Migrate state files with extensive checks (tooling-trusted-releases)
via GitHub
2026/01/16
Re: [PR] Possible recurrent jobs implementation (tooling-trusted-releases)
via GitHub
2026/01/15
Re: [I] Evaluate ASVS v5.0.0 compliance: server side execution (tooling-trusted-releases)
via GitHub
2026/01/15
Re: [PR] fixed issue 477 (tooling-trusted-releases)
via GitHub
2026/01/15
Re: [PR] fixed issue 477 (tooling-trusted-releases)
via GitHub
2026/01/15
Re: [PR] Document database cascade deletions (tooling-trusted-releases)
via GitHub
2026/01/15
Re: [PR] Document database cascade deletions (tooling-trusted-releases)
via GitHub
2026/01/15
Re: [I] Organise all files into subdirectories within the state directory (tooling-trusted-releases)
via GitHub
2026/01/15
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/15
[GH] Possible recurrent jobs implementation (tooling-trusted-releases)
via GitHub
2026/01/15
[GH] Possible recurrent jobs implementation (tooling-trusted-releases)
via GitHub
2026/01/15
[GH] Possible recurrent jobs implementation (tooling-trusted-releases)
via GitHub
2026/01/15
[GH] Possible recurrent jobs implementation (tooling-trusted-releases)
via GitHub
2026/01/15
[GH] Possible recurrent jobs implementation (tooling-trusted-releases)
via GitHub
2026/01/15
[GH] Possible recurrent jobs implementation (tooling-trusted-releases)
via GitHub
2026/01/15
[I] Organise all files into subdirectories within the state directory (tooling-trusted-releases)
via GitHub
2026/01/15
Re: [I] Organise all files into subdirectories within the state directory (tooling-trusted-releases)
via GitHub
2026/01/15
[GH] Possible recurrent jobs implementation (tooling-trusted-releases)
via GitHub
2026/01/15
Re: [PR] Possible recurrent jobs implementation (tooling-trusted-releases)
via GitHub
2026/01/15
[PR] Possible recurrent jobs implementation (tooling-trusted-releases)
via GitHub
2026/01/15
Re: [I] DB JDO project label is db-_jdo with an extra symbol between db and jdo (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] DB JDO project label is db-_jdo with an extra symbol between db and jdo (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Clarify and constrain permitted ASF TLP version numbers (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Ordering of private vs public functions (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Ordering of private vs public functions (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Allow release managers to be designated (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Improve HTML form validation error display and code quality (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Improve HTML form validation error display and code quality (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] DB JDO project label is db-_jdo with an extra symbol between db and jdo (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] DB JDO project label is db-_jdo with an extra symbol between db and jdo (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] DB JDO project label is db-_jdo with an extra symbol between db and jdo (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Promotion permissions for phase transitions and distributions (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Allow release managers to be designated (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Release policy improvements for ATR (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Release policy improvements for ATR (tooling-trusted-releases)
via GitHub
2026/01/14
[I] FAQs on ATR for legal release policy (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Release policy improvements for ATR (tooling-trusted-releases)
via GitHub
2026/01/14
[I] Incubator documentation for release management (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Promotion permissions for phase transitions and distributions (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Promotion permissions for phase transitions and distributions (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Release policy improvements for ATR (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Release policy improvements for ATR (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Promotion permissions for phase transitions and distributions (tooling-trusted-releases)
via GitHub
2026/01/14
[I] Infra documentation additions to describe using ATR in release creation (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Review permissions for all actions in ATR (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Document the layout of the filesystem (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Infra documentation changes for the Release Manager role (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Infra documentation changes for the Release Manager role (tooling-trusted-releases)
Andrew Wetmore
2026/01/14
[I] Infra documentation changes for Download pages (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Infra documentation changes for the Release Manager role (tooling-trusted-releases)
Andrew Wetmore
2026/01/14
Re: [I] Infra documentation changes for the Release Manager role (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Document the layout of the filesystem (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Document the layout of the filesystem (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Infra documentation changes for the Release Manager role (tooling-trusted-releases)
via GitHub
2026/01/14
[I] Infra documentation changes for the Release Manager role (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Allow release managers to be designated (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Finish option to automatically archive prior release (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Allow release managers to be designated (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Ensure that ATR can be developed on musl based Linux distributions (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Ensure that ATR can be developed on musl based Linux distributions (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Ensure that ATR can be developed on musl based Linux distributions (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [PR] Document database cascade deletions (tooling-trusted-releases)
via GitHub
2026/01/14
[I] Promotion permissions for phase transitions and distributions (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Allow release managers to be designated (tooling-trusted-releases)
via GitHub
2026/01/14
[I] Add a PR form to orient new developers (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Add a PR form to orient new developers (tooling-trusted-releases)
via GitHub
2026/01/14
[I] Document the layout of the filesystem (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Make it less likely that release artifacts can be accidentally modified or deleted (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Document database cascades (tooling-trusted-releases)
via GitHub
2026/01/14
[I] Allow release managers to be designated (tooling-trusted-releases)
via GitHub
2026/01/14
[PR] Document database cascade deletions (#517) (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Do not allow revision serial numbers to be reallocated (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Do not allow revision serial numbers to be reallocated (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Review permissions for all actions in ATR (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Ensure that ATR can be developed on musl based Linux distributions (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Ensure that ATR can be developed on musl based Linux distributions (tooling-trusted-releases)
via GitHub
2026/01/14
[I] Ensure that ATR can be developed on musl based Linux distributions (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Updated Readme (tooling-actions)
via GitHub
2026/01/14
Re: [I] Updated Readme (tooling-actions)
via GitHub
2026/01/14
Re: [I] Updated Readme (tooling-actions)
via GitHub
2026/01/14
Re: [I] Updated Readme (tooling-actions)
via GitHub
2026/01/14
Re: [I] Updated Readme (tooling-actions)
via GitHub
2026/01/14
[I] Updated Readme (tooling-actions)
via GitHub
2026/01/14
Re: [I] Do not allow revision serial numbers to be reallocated (tooling-trusted-releases)
via GitHub
2026/01/14
[I] Document database cascades (tooling-trusted-releases)
via GitHub
2026/01/14
[I] Do not allow revision serial numbers to be reallocated (tooling-trusted-releases)
via GitHub
2026/01/14
[I] Make it less likely that release artifacts can be accidentally modified or deleted (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/14
[PR] # This is a combination of 2 commits. (tooling-trusted-releases)
via GitHub
2026/01/14
Re: [PR] # This is a combination of 2 commits. (tooling-trusted-releases)
via GitHub
2026/01/13
[I] DB JDO project label is db-_jdo with an extra symbol between db and jdo (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Allow a past release to be archived when creating a new release (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Improve RAT checks (tooling-trusted-releases)
via GitHub
2026/01/13
[I] Beta track (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Work on the following issues in order (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Work on the following issues in order (tooling-trusted-releases)
via GitHub
2026/01/13
[I] Miscellaneous track (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Ignore checks are ignored (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] /api/project/releases/{name} should return 404 for non-existent project (tooling-trusted-releases)
via GitHub
2026/01/13
[I] Ensure that a project can only be deleted or archived under certain conditions, and that the state is clear (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Ensure that a release can only be deleted or archived, and that the state is clear (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Review permissions for all actions in ATR (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Review permissions for all actions in ATR (tooling-trusted-releases)
via GitHub
2026/01/13
[I] Allow a past release to be archived when creating a new release (tooling-trusted-releases)
via GitHub
2026/01/13
[I] Block announcing a release if tagged distributions have not yet been done (tooling-trusted-releases)
via GitHub
2026/01/13
[I] Ensure that a release can only be deleted or archived, and that the state is clear (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Review permissions for all actions in ATR (tooling-trusted-releases)
via GitHub
2026/01/13
[I] Ensure that error messages from the storage interface are informative (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Project lifecycle information as part of the release catalog (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Project lifecycle information as part of the release catalog (tooling-trusted-releases)
via GitHub
2026/01/13
[I] /api/project/releases/{name} should return 404 for non-existent project (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Consider allowing different authentication methods on a single endpoint (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Add easier methods to prevent check results from being cached (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [PR] Work to enable automatic distributions (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [PR] Work to enable automatic distributions (tooling-trusted-releases)
via GitHub
2026/01/13
[I] Consider allowing different authentication methods on a single endpoint (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Add easier methods to prevent check results from being cached (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [PR] Work to enable automatic distributions (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [PR] Work to enable automatic distributions (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/13
[GH] Work to enable automatic distributions (tooling-trusted-releases)
via GitHub
2026/01/13
[GH] Work to enable automatic distributions (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [PR] Work to enable automatic distributions (tooling-trusted-releases)
via GitHub
2026/01/13
[GH] Work to enable automatic distributions (tooling-trusted-releases)
via GitHub
2026/01/13
[GH] Work to enable automatic distributions (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/13
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Setup projects vm for development (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Setup projects vm for development (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Integrate ATR secrets with Puppet (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Get admin users from Infra and Tooling LDAP groups (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Get admin users from Infra and Tooling LDAP groups (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Review permissions for all actions in ATR (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Review permissions for all actions in ATR (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Protect the project from low quality PR contributions (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Speed up building the OCI container (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Protect the project from low quality PR contributions (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] @openrefactoryinc.1925 (tooling-trusted-releases)
via GitHub
2026/01/12
[I] @openrefactoryinc.1925 (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Clarify and constrain permitted ASF TLP version numbers (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] .dockerignore should use allowlist strategy (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] .dockerignore should use allowlist strategy (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Setup projects vm for development (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Setup projects vm for development (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Setup projects vm for development (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [PR] fixed issue 477 (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/12
[I] Make the vast majority of files compatible with `fix_order.sh`, and add to linting (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Add easier methods to prevent check results from being cached (tooling-trusted-releases)
via GitHub
2026/01/12
[PR] Work to enable automatic distributions (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Add easier methods to prevent check results from being cached (tooling-trusted-releases)
via GitHub
2026/01/12
Re: [I] Improve error reporting when /resolve/tabulated data is unavailable (tooling-trusted-releases)
via GitHub
2026/01/10
Re: [I] Setup projects vm for development (tooling-trusted-releases)
via GitHub
2026/01/10
Re: [I] Setup projects vm for development (tooling-trusted-releases)
via GitHub
Earlier messages
Later messages