Hacker News new | ask | show | jobs
by cyberbender 797 days ago
This is great; the less long-lived credentials the better!

Now developers just need to make sure they secure their code at the pipeline level. Pipeline compromise = package compromise.