title |
---|
Open-source contributions of the Chains project |
The project's contributions to the open-source infrastructure.
- Maven
- Pypi
- Go
- Github
- search on Github for all commits signed by a given GPG or SSH key
- fix outdated Github workflow template
- keep github action logs forever for transparency and auditability of published software packages
- link to attestation in NPM automated notification emails
- Github SBOMs are not compatible with Grype
- Docker
- npm
Applications:
- Key contributions to make go-ethereum / geth reproducible
- Maven artifacts reproducibility
- Diffoscope
- Bug Report: Different output of diffoscope on different operating system
- Bug Report: Propose fix for disabling syntax highlighting in the diff
- Bug Report: Propose fix for correctly identifying line endings difference in file
- Bug Report: Diffoscope falls back to xxd for two (seemingly) text files with identical content
- Bug Report: XXD diff between jar files even though diff is in an HTML file zipped inside
- oss-rebuild
- Reproducible-Central
- Scorecard
Under our radar (not opened by us but relevant)