Enable immutable GitHub Releases

XMLWordPrintableJSON

    • Type: Task
    • Resolution: Unresolved
    • Priority: Unknown
    • None
    • Affects Version/s: None
    • Component/s: Infrastructure
    • None
    • None
    • Python Drivers
    • None
    • None
    • None
    • None
    • None
    • None

      Context

      GitHub has a feature to "Enable release immutability". It will "Disallow assets and tags from being modified once a release is published." We enabled the setting on pymongo as a test, and it worked well in the 4.15.4 release. I think we should enable it on all repos.

      https://docs.github.com/en/code-security/supply-chain-security/understanding-your-software-supply-chain/immutable-releases

      Definition of done

      Enable the setting on all repos, using the Task Tracking worksheet.

      Pitfalls

      None

            Assignee:
            Jib Adegunloye
            Reporter:
            Steve Silvester
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: