gha-release-pipeline

Community

Design reproducible GitHub release pipelines.

Authoraskaret
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Release workflows are often opaque and error-prone, making it difficult to guarantee reproducible builds, verifiable provenance, and safe artifact publishing during software releases.

Core Features & Use Cases

  • Ensure releases come from a clean, tagged source of truth and are auditable.
  • Integrate SBOM and provenance attestations into the release process to meet compliance needs.
  • Isolate publishing credentials and enforce least privilege across environments with explicit permissions and guards.

Quick Start

Configure a GitHub Actions workflow to build, attest, and publish release artifacts with SBOM provenance.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: gha-release-pipeline
Download link: https://github.com/askaret/codex-skills/archive/main.zip#gha-release-pipeline

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 223,000+ vetted skills library on demand.