Skip to content

Generate and publish provenance statements to npm (#687)#688

Merged
adamkudrna merged 1 commit intomasterfrom
maintenance/687
Feb 11, 2026
Merged

Generate and publish provenance statements to npm (#687)#688
adamkudrna merged 1 commit intomasterfrom
maintenance/687

Conversation

@bedrich-schindler
Copy link
Contributor

Closes #687

Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR adds provenance statement generation to the npm publishing process by adding the --provenance flag to the npm publish command. Provenance provides transparency about how and where the package was built, enhancing supply chain security.

  • Adds --provenance flag to the npm publish command to generate and publish attestations

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Base automatically changed from maintenance/685 to master December 23, 2025 11:00
@bedrich-schindler
Copy link
Contributor Author

ping @adamkudrna @mbohal

@adamkudrna adamkudrna merged commit bfa6b65 into master Feb 11, 2026
11 checks passed
@adamkudrna adamkudrna deleted the maintenance/687 branch February 11, 2026 12:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Enable npm package provenance

2 participants

Comments