You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Repository navigation
v0.7.0 - Docker Content Trust in Dockerfiles, compose, k8s, scripts
This commit was created on GitHub.com and signed with GitHub’s verified signature.
0.7.0 - 2026-10-03
Docker Content Trust outside .github (issue #27): the docker-content-trust rule now also reads Dockerfiles/Containerfiles, Compose files, Kubernetes manifests (env as name:/value: pairs or flow maps) and other YAML, *.sh, Makefiles, .env* files, and recognises --disable-content-trust=false and the old ENV DOCKER_CONTENT_TRUST 1 form. An explicit Dockerfile path works and is no longer read as a workflow. --no-deadlines skips all of it.