Commit Graph

1 Commits (291bf7d7650f112b1682f7e5f59b60c8fbdfe114)

Author SHA1 Message Date
Jeff Culverhouse 291bf7d765 feat: add image signing, vulnerability scanning, and security policy
- Add Cosign image signing using Sigstore keyless signing
- Add Trivy vulnerability scanning with SARIF output to GitHub Security tab
- Add SECURITY.md with vulnerability reporting instructions
- Add required permissions for security-events and id-token

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
1 month ago