Skip to content

Conversation

@hyperpolymath
Copy link
Owner

  • Add guix.scm as primary package manager (RSR requirement)
  • SHA-pin all GitHub Actions for supply chain security
  • Update version to 0.2.0-dev across flake.nix and justfile
  • Add guix.scm check to justfile validation
  • Create ROADMAP.md with current development status

Security improvements:

  • actions/checkout pinned to v4.2.2
  • github/codeql-action pinned to v3.28.0
  • ossf/scorecard-action pinned to v2.4.0
  • trufflesecurity/trufflehog pinned to v3.88.1
  • editorconfig-checker pinned to v2.0.0
  • All Jekyll/Pages actions SHA-pinned

- Add guix.scm as primary package manager (RSR requirement)
- SHA-pin all GitHub Actions for supply chain security
- Update version to 0.2.0-dev across flake.nix and justfile
- Add guix.scm check to justfile validation
- Create ROADMAP.md with current development status

Security improvements:
- actions/checkout pinned to v4.2.2
- github/codeql-action pinned to v3.28.0
- ossf/scorecard-action pinned to v2.4.0
- trufflesecurity/trufflehog pinned to v3.88.1
- editorconfig-checker pinned to v2.0.0
- All Jekyll/Pages actions SHA-pinned
@hyperpolymath hyperpolymath merged commit 0bc6ca0 into main Dec 17, 2025
8 of 11 checks passed
@hyperpolymath hyperpolymath deleted the claude/review-scm-security-4ALxt branch December 17, 2025 20:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants