GetIntegrityAPI Proof of Publish
Version updated for https://github.com/GetIntegrityAPI/proof-of-publish to version v1.
- This action is used across all versions by ? repositories.
Action Type
This is a Composite action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary
The GetIntegrityAPI Proof of Publish GitHub Action automates the generation of cryptographically signed proof artifacts, including a public verification URL, SHA-256 integrity digest, and audit-ready receipts, for every CI/CD release workflow run. Designed for DevOps and security teams, it solves the problem of establishing independently verifiable release evidence without requiring complex infrastructure, enhancing supply chain transparency, release integrity, and audit compliance. Key capabilities include public proof generation, offline integrity checks, and evidence packaging for regulatory and security purposes.
What’s Changed
Initial release of the GetIntegrityAPI Proof of Publish GitHub Action.
Features:
- Generate cryptographically verifiable publish receipts
- Public proof verification via GetIntegrityAPI
- CI/CD release lineage tracking
- Offline-verifiable integrity artifacts (receipt.json, receipt.sha256, receipt.pdf)