The code repository GitHub supports the option of signing changes to the source code by the contributor. Signing Git commits is important because in this age of malicious code and back doors, it helps protect you from an attacker who might otherwise inject malicious code into your codebase. It also helps discourage untrustworthy developers from adding their own back doors to the code.

4m read timeFrom blog.keenthinker.com
Post cover image
Table of contents
ThrustworthyHow to enable signature verification

Sort: