tailwindcss/.github/workflows
saibotk d86fd0bb5b
CI: Add provenance to all published packages (#13097)
* CI: Add provenance to all published packages

This commit adds provenance for all published packages. See the NPM documentation [0].

Provenance will allow people to verify that the tailwindcss packages were actually built on GH Actions and with the content of the corresponding commit. This will help with supply chain security.

For this to work, the `id-token` permission was added only where necessary.

[0]: https://docs.npmjs.com/generating-provenance-statements

* chore: Add missing repository links to packages

This is needed for provenance, to link the repository to the build accoring to the NPM docs [0].

[0]: https://docs.npmjs.com/generating-provenance-statements#prerequisites
2024-03-07 15:32:58 -05:00
..
ci-stable.yml Update CI 2023-12-19 10:25:04 -05:00
ci.yml Update CI 2023-12-19 10:25:04 -05:00
integration-tests-oxide.yml Update CI 2023-12-19 10:25:04 -05:00
integration-tests-stable.yml Update CI 2023-12-19 10:25:04 -05:00
prepare-release.yml Ensure CI jobs don't run for longer than 15 minutes (#11496) 2023-07-13 11:48:35 -04:00
release-insiders-oxide.yml CI: Add provenance to all published packages (#13097) 2024-03-07 15:32:58 -05:00
release-insiders-stable.yml CI: Add provenance to all published packages (#13097) 2024-03-07 15:32:58 -05:00
release-oxide.yml CI: Add provenance to all published packages (#13097) 2024-03-07 15:32:58 -05:00
release-stable.yml CI: Add provenance to all published packages (#13097) 2024-03-07 15:32:58 -05:00