Skip to content

Dev: github action for check GPG KEY #792

Description

@datamweb

Shield does not accept commits that are not signed with GPG KEY, so there is an Github Action to automatically check the signature of commits and add a tag GPG-Signing needed and a comment to explain:

How to setup a GPG key
How to GPG-Signing Old Commits

Activity

  1. kenjis commented on Aug 24, 2023

    @kenjis
    Member

    This is a shell script to check GPG signature by ChatGPT.

    #!/bin/bash
    
    commit_hash=$1
    
    if [ -z "$commit_hash" ]; then
        echo "Usage: $0 <commit-hash>"
        exit 1
    fi
    
    signature=$(git show "$commit_hash" --show-signature 2>&1 | grep -o "gpg: Good signature")
    if [ -z "$signature" ]; then
        echo "Error: Commit $commit_hash does not have a valid GPG signature."
        exit 1
    fi
    
    echo "Commit $commit_hash has a valid GPG signature."
  2. kenjis commented on Sep 21, 2023

    @kenjis
    Member
  3. datamweb commented on Feb 24, 2024

    @datamweb
    CollaboratorAuthor

    Smart Commenting are not working well at the moment.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    devgithub_actionsPull requests that update GitHub Actions code

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions