GSA / data.gov

Main repository for the data.gov service
https://data.gov
Other
547 stars 87 forks source link

Require signed commits for main branch in all repos #4768

Open btylerburton opened 1 month ago

btylerburton commented 1 month ago

User Story

In order to ensure compliance with GSA-wide security initiatives, datagovteam wants to require developers to ensure their commits to github are signed.

Acceptance Criteria

[ACs should be clearly demoable/verifiable whenever possible. Try specifying them using BDD.]

Background

Related to:

[Any helpful contextual notes or links to artifacts/evidence, if needed]

Security Considerations (required)

[Any security concerns that might be implicated in the change. "None" is OK, just be explicit here!]

Sketch

gujral-rei commented 1 month ago

need help/info from authorized individual (admin access) update the onboarding documentation individual team members need to action