* update sigstore-go dep to v0.3.0 Signed-off-by: Meredith Lancaster <malancas@github.com> * add integration test to verify newer sigstore bundle versions Signed-off-by: Meredith Lancaster <malancas@github.com> * Fix shellcheck issues Signed-off-by: Meredith Lancaster <malancas@github.com> * Give the cli/package-security team ownership over gh attestation cmd integration tests Signed-off-by: Meredith Lancaster <malancas@github.com> * fetch attestation file Signed-off-by: Meredith Lancaster <malancas@github.com> * clean up new integration test Signed-off-by: Meredith Lancaster <malancas@github.com> * try pulling other attestation file Signed-off-by: Meredith Lancaster <malancas@github.com> * cleanup new attestation verify integration test Signed-off-by: Meredith Lancaster <malancas@github.com> * add new gh atestation integration test to workflow Signed-off-by: Meredith Lancaster <malancas@github.com> * mark script as executable Signed-off-by: Meredith Lancaster <malancas@github.com> * rename the integration test file Signed-off-by: Meredith Lancaster <malancas@github.com> --------- Signed-off-by: Meredith Lancaster <malancas@github.com>
10 lines
384 B
Text
10 lines
384 B
Text
* @cli/code-reviewers
|
|
|
|
pkg/cmd/codespace/ @cli/codespaces
|
|
internal/codespaces/ @cli/codespaces
|
|
|
|
# Limit Package Security team ownership to the attestation command package and related integration tests
|
|
pkg/cmd/attestation/ @cli/package-security
|
|
test/integration/attestation-cmd @cli/package-security
|
|
|
|
pkg/cmd/attestation/verification/embed/tuf-repo.github.com/ @cli/tuf-root-reviewers
|