Join us

ContentUpdates and recent posts about Sigstore..
Link
@devopslinks shared a link, 1ย month, 1ย week ago
FAUN.dev()

Migrating from DigitalOcean to Hetzner: From $1,432 to $233/month With Zero Downtime

A walkthrough of migrating 248 GB of MySQL across 30 databases, 34 Nginx sites, GitLab EE, and Neo4j from a $1,432/month DigitalOcean droplet to a $233/month Hetzner AX162-R dedicated box with no downtime. The path:mydumper/myloaderwith 32 threads for the bulk MySQL 5.7 to 8.0 import, master-to-repl.. read more ย 

Link
@devopslinks shared a link, 1ย month, 1ย week ago
FAUN.dev()

Incidents *Will* Happen. Are You (Actually) Prepared?

Joe Mckevitt, CTO of Uptime Labs, argues that incident prevention and incident preparation are not substitutes, and that organizations relying on the heroic engineer who knows the infrastructure at 2amhave a habit, not a strategy. The piece pushes for a deliberate playbook (practiced communication, .. read more ย 

Link
@devopslinks shared a link, 1ย month, 1ย week ago
FAUN.dev()

I Left Port 22 Open on the Internet for 54 Days. Here's Who Showed Up.

A 54-day SSH honeypot on port 22 logged 268,000+ login attempts from 7,556 IPs, with 99.6% of attackers running a single automated fingerprinting command and only 28 ever opening an interactive shell. The data shows hardcoded IoT credentials and Solana validator hunting dominating the password lists.. read more ย 

I Left Port 22 Open on the Internet for 54 Days. Here's Who Showed Up.
Story
@laura_garcia shared a post, 1ย month, 1ย week ago
Software Developer, RELIANOID

๐—š๐—น๐—ผ๐—ฏ๐—ฎ๐—น ๐—ง๐—ฟ๐—ฎ๐—ณ๐—ณ๐—ถ๐—ฐ ๐— ๐—ฎ๐—ป๐—ฎ๐—ด๐—ฒ๐—บ๐—ฒ๐—ป๐˜ (๐—š๐—ง๐— )

๐ŸŒ ๐—œ๐—ป๐˜๐—ฟ๐—ผ๐—ฑ๐˜‚๐—ฐ๐˜๐—ถ๐—ผ๐—ป ๐˜๐—ผ ๐—š๐—น๐—ผ๐—ฏ๐—ฎ๐—น ๐—ง๐—ฟ๐—ฎ๐—ณ๐—ณ๐—ถ๐—ฐ ๐— ๐—ฎ๐—ป๐—ฎ๐—ด๐—ฒ๐—บ๐—ฒ๐—ป๐˜ (๐—š๐—ง๐— ) Delivering fast, resilient applications globally isnโ€™t optional anymoreโ€”itโ€™s expected. Global Traffic Management (GTM) ensures users are always routed to the ๐—ฏ๐—ฒ๐˜€๐˜-๐—ฝ๐—ฒ๐—ฟ๐—ณ๐—ผ๐—ฟ๐—บ๐—ถ๐—ป๐—ด ๐—ฎ๐—ป๐—ฑ ๐—บ๐—ผ๐˜€๐˜ ๐—ฟ๐—ฒ๐—น๐—ถ๐—ฎ๐—ฏ๐—น๐—ฒ ๐—ฑ๐—ฎ๐˜๐—ฎ ๐—ฐ๐—ฒ๐—ป๐˜๐—ฒ๐—ฟ, improving performance, availability, and scal..

ย Activity
@ozzuns created an organization How the Right Digital Marketing , 1ย month, 1ย week ago.
Story
@viktoriiagolovtseva shared a post, 1ย month, 1ย week ago

Jira Roles and Permissions: The Complete Guide to Managing User Access and Project Security

If youโ€™ve ever tried to troubleshoot why someone canโ€™t transition an issue, or worse, why someone closed an issue they never should have touched, you already know that Jira permissions arenโ€™t just a background configuration. They shape how your teams collaborate, what people see, and who has the power to move work forward.

This guide is for anyone setting up Jira from scratch, cleaning up a messy instance, or just making sure your permission model supports how your teams work. Weโ€™ll walk through global permissions, project roles, permission schemes, real-world workflows, and how some add-ons fit into the picture.

Zrzut ekranu 2026-05-08 141830
Story
@laura_garcia shared a post, 1ย month, 1ย week ago
Software Developer, RELIANOID

Deploy ๐—ฅ๐—˜๐—Ÿ๐—œ๐—”๐—ก๐—ข๐—œ๐—— ๐—Ÿ๐—ผ๐—ฎ๐—ฑ ๐—•๐—ฎ๐—น๐—ฎ๐—ป๐—ฐ๐—ฒ๐—ฟ ๐—˜๐—ป๐˜๐—ฒ๐—ฟ๐—ฝ๐—ฟ๐—ถ๐˜€๐—ฒ ๐˜ƒ๐Ÿด on ๐—”๐—ช๐—ฆ with ๐—ง๐—ฒ๐—ฟ๐—ฟ๐—ฎ๐—ณ๐—ผ๐—ฟ๐—บ

๐Ÿš€ ๐—ค๐˜‚๐—ถ๐—ฐ๐—ธ ๐—ด๐˜‚๐—ถ๐—ฑ๐—ฒ ๐—ฎ๐˜ƒ๐—ฎ๐—ถ๐—น๐—ฎ๐—ฏ๐—น๐—ฒ Deploy ๐—ฅ๐—˜๐—Ÿ๐—œ๐—”๐—ก๐—ข๐—œ๐—— ๐—Ÿ๐—ผ๐—ฎ๐—ฑ ๐—•๐—ฎ๐—น๐—ฎ๐—ป๐—ฐ๐—ฒ๐—ฟ ๐—˜๐—ป๐˜๐—ฒ๐—ฟ๐—ฝ๐—ฟ๐—ถ๐˜€๐—ฒ ๐˜ƒ๐Ÿด on ๐—”๐—ช๐—ฆ with ๐—ง๐—ฒ๐—ฟ๐—ฟ๐—ฎ๐—ณ๐—ผ๐—ฟ๐—บ easily using the official module. โœ”๏ธ Ready-to-use infrastructure (VPC, subnet, security groups) โœ”๏ธ EC2 instance with RELIANOID AMI โœ”๏ธ SSH and Web GUI access โœ”๏ธ Clean teardown with terraform destroy ๐Ÿ‘‰ https://w..

terraform_relianoid_enterprise_img2
Story
@viktoriiagolovtseva shared a post, 1ย month, 1ย week ago

A 2025 Jira Automation Guide With the Top 10 Most Common Use Cases

Jira has many flaws that have been highlighted by numerous competitors, such as monday.com. Yet, thereโ€™s a reason why Atlassian dominates the project management market with a whopping86.63% market sharein bug-and-issue-tracking: the flexibility and customizability of their solutions. In this article..

Zrzut ekranu 2026-05-08 125940
Story
@koukibadr shared a post, 1ย month, 1ย week ago
Mobile Developer, Nventive

Auto Disposal in Flutter Projects

title: Stop Writing dispose() by Hand โ€” Introducing auto_disposal for Flutter published: true tags: flutter, dart, opensource, codeberg Every Flutter developer has been there: you open a StatefulWidget, create a handful of controllers, and then... you have to remember to dispose every single one of ..

8b60603d7f26f3795059b01838d85ee5
Story
@laura_garcia shared a post, 1ย month, 1ย week ago
Software Developer, RELIANOID

๐—”๐—œ & ๐—ž๐—ฒ๐˜† ๐—ง๐—ฒ๐—ฐ๐—ต ๐—ฆ๐˜‚๐—บ๐—บ๐—ถ๐˜ ๐Ÿฎ๐Ÿฌ๐Ÿฎ๐Ÿฒ

๐Ÿš€ ๐—ช๐—ผ๐—บ๐—ฒ๐—ป๐—ง๐—ฒ๐—ฐ๐—ต ๐—š๐—น๐—ผ๐—ฏ๐—ฎ๐—น ๐—–๐—ผ๐—ป๐—ณ๐—ฒ๐—ฟ๐—ฒ๐—ป๐—ฐ๐—ฒ โ€“ ๐—”๐—œ & ๐—ž๐—ฒ๐˜† ๐—ง๐—ฒ๐—ฐ๐—ต ๐—ฆ๐˜‚๐—บ๐—บ๐—ถ๐˜ ๐Ÿฎ๐Ÿฌ๐Ÿฎ๐Ÿฒ ๐Ÿ“… May 12โ€“15 | ๐ŸŒ Virtual Event The future of tech is being built now โ€” and itโ€™s more inclusive, innovative, and collaborative than ever. Join global leaders, engineers, and innovators at the WomenTech Global Conference โ€“ AI & Key Tech Summit 2..

women_in_tech_virtual_event_2026_relianoid
Sigstore is an open source initiative designed to make software artifact signing and verification simple, automatic, and widely accessible. Its primary goal is to improve software supply chain security by enabling developers and organizations to cryptographically prove the origin and integrity of the software they build and distribute.

At its core, sigstore removes many of the traditional barriers associated with code signing. Instead of managing long-lived private keys manually, sigstore supports keyless signing, where identities are issued dynamically using OpenID Connect (OIDC) providers such as GitHub Actions, Google, or Microsoft. This dramatically lowers operational complexity and reduces the risk of key compromise.

The sigstore ecosystem is composed of several key components:

- Cosign: A tool for signing, verifying, and storing signatures for container images and other artifacts. Signatures are stored alongside artifacts in OCI registries, rather than embedded in them.

- Fulcio: A certificate authority that issues short-lived X.509 certificates based on OIDC identities, enabling keyless signing.

- Rekor: A transparency log that records signing events in an append-only, tamper-evident ledger. This provides public auditability and detection of suspicious or malicious signing activity.

Together, these components allow anyone to verify who built an artifact, when it was built, and whether it has been tampered with, using publicly verifiable cryptographic proofs. This aligns closely with modern supply chain security practices such as SLSA (Supply-chain Levels for Software Artifacts).

sigstore is widely adopted in the cloud-native ecosystem and integrates with tools like Kubernetes, container registries, CI/CD pipelines, and package managers. It is commonly used to sign container images, Helm charts, binaries, and SBOMs, and is increasingly becoming a baseline security requirement for production software delivery.

The project is governed by the OpenSSF (Open Source Security Foundation) and supported by major industry players.