On Tue, Apr 28, 2020 at 04:42:47PM +0200, Nicolas Vigier wrote:
Hi,
Attached is a proposal for signing commits with gpg.
Hi, this sounds incredibly useful. I'd love to contribute and also bring in the usage of push certificates where applicable? Is that something that has been considered?
I can submit a post-receive hook to hash-chain push-certificates and verify them at checkout/tagging time...
Cheers! -Santiago