Shopify / ruby-sigstore

Rubygems sigstore signing plugin
Apache License 2.0
7 stars 6 forks source link

Check responses from Fulcio/Rekor POSTs, raise unless expected #62

Closed rochlefebvre closed 2 years ago

rochlefebvre commented 2 years ago

Just a quick change to raise if Fulcio responds unexpectedly while creating a certificate, and if Rekor does so when creating a log entry.

I thought there was an issue in the backlog to handle this, but I can't find it. Adding a note to flesh out later: https://github.com/Shopify/ruby-sigstore/projects/1#card-76792493