~/devreads

#github actions

3 posts

Yesterday

Brian May 3 min read

The recent Trivy GitHub Actions security incident got me thinking more seriously about the security model around CI systems. Most teams spend a lot of time thinking about dependency security, but I increasingly think GitHub Actions workflows deserve to be viewed through the exact same lens. In some cases, they may actually represent a larger […] The post Is GitHub…

development practicesgithubgithub actions

26 Nov 2025

22 Sept 2025