jiahao.blog

14 Apr 2025

A Git Horror Story: Repository Integrity With Signed Commits

Often, most developers do not think about the security of their commits. Whether or not commits were actually from them often comes as an afterthought - if not, never. That was certainly the case for me. It was not until a good friend of mine shared this article with me that I started to pay more attention to the tools that I have. It cited a scenario that - I believe - many developers would not have thought of and goes into ways to show how what we believe as “safe” may not always be the case.

This article is a great look into the security of a widely used developer tool - Git - and the precautions we can take to defend ourselves against potentially bad situations.

Enjoyed reading?

Consider subscribing to my RSS feed or reaching out to me through email!

You might enjoy...

15 Apr 2025

The Great Migration

12 Mar 2025

Don't Try

17 Mar 2024

Where Have I Been? (2024 Edition)