Build Provenance and Deployment Gate Operations
Supply-chain security is not complete when an attestation exists. It matters when provenance becomes part of deployment policy.
AI DevOps Korea
Aidevops.kr covers LLMOps, RAG, agents, observability, evaluation, and cost-performance optimization for production AI services.
This group clusters posts that are best read together inside the DevOps category, so the learning path feels more intentional.
This group currently contains 3 posts.
Start Here
Supply-chain security is not complete when an attestation exists. It matters when provenance becomes part of deployment policy.
Group Archive
Supply-chain security is not complete when an attestation exists. It matters when provenance becomes part of deployment policy.
A practical introduction to SBOMs, provenance, attestations, and release verification for teams hardening modern delivery pipelines.
This article explains how to design reliable CI/CD pipelines with GitHub Actions, covering test separation, caching strategy, environment promotion, secret management, and deployment stability from a practical engineering perspective.