Skip to content
Navigation Menu
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Copilot app
Direct agents from issue to merge
MCP Registry
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Code Quality
Enforce quality at merge
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
View all resources
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
Accelerator
GitHub Stars
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search
/
Sign in
Sign up
Appearance settings
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
Uh oh!
There was an error while loading.
Please reload this page
.
RunMaestro
/
Maestro
Public
Notifications
You must be signed in to change notification settings
Fork
348
Star
3.3k
Code
Issues
30
Pull requests
39
Actions
Security and quality
0
Insights
Additional navigation options
Code
Issues
Pull requests
Actions
Security and quality
Insights
Sign bundled plugins during release with drift guard
- #1298
#1298
Open
chr1syy
wants to merge 10 commits into
RunMaestro:rc
RunMaestro/Maestro:rc
from
chr1syy:fix/a1-agent-flow-signing
chr1syy/Maestro:fix/a1-agent-flow-signing
Copy head branch name to clipboard
Conversation
Commits
10
(10)
Checks
Files changed
Open
Sign bundled plugins during release with drift guard
#1298
chr1syy
wants to merge 10 commits into
RunMaestro:rc
RunMaestro/Maestro:rc
from
chr1syy:fix/a1-agent-flow-signing
chr1syy/Maestro:fix/a1-agent-flow-signing
Copy head branch name to clipboard
Commits
Commits on Jul 25, 2026
MAESTRO: sign bundled plugins during release build
Show description for 0deda98
chr1syy
and
claude
committed
0deda98
View commit details
Copy full SHA for 0deda98
Browse repository at this point
MAESTRO: add anchor/secret drift guard to bundled-plugin signing
Show description for 6f5aff0
chr1syy
and
claude
committed
6f5aff0
View commit details
Copy full SHA for 6f5aff0
Browse repository at this point
MAESTRO: gitignore bundled-plugin signature artifact + document dev signing workflow
Show description for a3df994
chr1syy
and
claude
committed
a3df994
View commit details
Copy full SHA for a3df994
Browse repository at this point
MAESTRO: test resolveTrustedKeys trust-anchor round trip
Show description for 95de155
chr1syy
and
claude
committed
95de155
View commit details
Copy full SHA for 95de155
Browse repository at this point
MAESTRO: validation fixes for A1
chr1syy
committed
4074854
View commit details
Copy full SHA for 4074854
Browse repository at this point
Commits on Jul 26, 2026
MAESTRO: address review on A1 bundled-plugin signing
Show description for 3dee561
chr1syy
and
claude
committed
3dee561
View commit details
Copy full SHA for 3dee561
Browse repository at this point
MAESTRO: make A1 signing safe while the publisher anchor is empty
Show description for 27d2c27
chr1syy
and
claude
committed
27d2c27
View commit details
Copy full SHA for 27d2c27
Browse repository at this point
Commits on Aug 7, 2026
MAESTRO: bake Maestro publisher public key as the bundled-plugin trust anchor
chr1syy
committed
714b306
View commit details
Copy full SHA for 714b306
Browse repository at this point
Commits on Aug 10, 2026
fix(plugins): bake the publisher key that matches the existing CI secret
Show description for 4cfc4df
chr1syy
committed
4cfc4df
View commit details
Copy full SHA for 4cfc4df
Browse repository at this point
ci(release): fail when the anchor is baked but the signing secret is gone
Show description for f2c6b86
chr1syy
committed
f2c6b86
View commit details
Copy full SHA for f2c6b86
Browse repository at this point
You can’t perform that action at this time.