Главная
Study mode:
on
1
Intro
2
Acknowledgements
3
Abigail introduction
4
Agenda
5
Why focus on security
6
Open Source is built on trust
7
GitHub is the stewards
8
Npm is a critical tool
9
Account Takeovers
10
What we learned
11
The plan
12
Login verification
13
Adoption update
14
Improved 2FA experience
15
Web authen
16
Better 2FA management
17
Better 2FA enforcement
18
Improved account recovery
19
New releases
20
granular access token
21
code explorer
22
Sigstore
23
Repository
24
Wrap up
25
Thank you
Description:
Explore the critical work GitHub is undertaking to secure the npm ecosystem in this 23-minute Linux Foundation conference talk. Delve into the importance of trust in open source and GitHub's role as stewards. Learn about measures implemented to prevent account takeovers, including improved two-factor authentication experiences, web authentication, and enhanced account recovery processes. Discover new features such as granular access tokens, code explorer, and Sigstore integration. Gain insights into the ongoing efforts to protect the open-source dependencies we all rely on, presented by Abigail Cabunoc Mayes from GitHub.

Securing the npm Ecosystem - Enhancing Trust in Open Source

Linux Foundation
Add to list
0:00 / 0:00