{"repo":"docker/github-builder","free":true,"listed":false,"github":"https://github.com/docker/github-builder","clone":"git clone https://github.com/docker/github-builder.git","description":"Official Docker-maintained reusable GitHub Actions workflows to securely build container images","language":null,"stars":81,"topics":["buildkit","buildx","docker","github-actions","github-actions-docker","security","security-hardening","slsa","slsa-provenance","sbom"],"license":"Apache-2.0","category":"deployment-docker-iac","readme_excerpt":"Overview Key Advantages Performance Security Isolation & Reliability Build reusable workflow Inputs Secrets Outputs Bake reusable workflow Inputs Secrets Outputs Notes Signed GitHub Actions cache Registry identities Docker Hub OIDC AWS ECR Google Artifact Registry Runner mapping Metadata templates Overview This repository provides official Docker-maintained reusable GitHub Actions workflows to securely build container images and artifacts using Docker best practices. The reusable workflows incorporate functionality from our GitHub Actions like docker/build-push-action , docker/metadata-action , etc., into a single workflow: This workflow provides a trusted BuildKit instance and generates signed SLSA-compliant provenance attestations, guaranteeing the build happened from the source commit and all build steps ran in isolated sandboxed environments from immutable sources. This enables GitHub projects to follow a seamless path toward higher levels of security and trust. Key Advantages Performance Native parallelization for multi-platform builds. Workflows can automatically distribute builds across runners based on target platform to be built, improving throughput for other architectures without requiring emulation or custom CI logic or self-managed runners. Optimized cache warming & reuse. The builder can use the GitHub Actions cache backend to persist layers across branches, PRs, and rebuilds. This significantly reduces cold-start times and avoids repeating expensive dependency ","default_branch":null,"files":null,"tree":[],"storefront":"/r/docker","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/docker/github-builder/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}