# CI Tripwire > Source-linked CI/CD workflow security and Stripe billing reliability articles for developers and maintainers. ## Navigation - [Home](https://dsotn.com/) - [Articles](https://dsotn.com/articles/) - [About](https://dsotn.com/about/) - [Stripe & Billing](https://dsotn.com/categories/stripe-billing/) - [gha-guard](https://github.com/agentlaunchops-ai/gha-guard) ## Articles by Category ### Stripe & Billing (5) - [Stripe Cancel-Save Flow in Node: Retain Subscribers](https://dsotn.com/articles/stripe-cancel-save-retention-node/) - [Stripe MRR and Churn in Node: Subscription Metrics](https://dsotn.com/articles/stripe-mrr-churn-events-node/) - [Usage-Based Billing with Stripe in Node: Meter Safely](https://dsotn.com/articles/stripe-usage-based-billing-node/) - [Stripe Per-Seat Billing in Node: Proration Controls](https://dsotn.com/articles/stripe-per-seat-billing-proration-node/) - [Stripe Webhook Idempotency in Node: Stop Double Work](https://dsotn.com/articles/stripe-webhook-idempotency-node/) ### GitHub Actions (13) - [GitHub Actions workflow execution protections guide](https://dsotn.com/articles/github-actions-workflow-execution-protections/) - [npm Trusted Publishing: Safer GitHub Actions Releases](https://dsotn.com/articles/npm-trusted-publishing-github-actions/) - [Dependabot GitHub Actions: Safer Bot PR CI Workflows](https://dsotn.com/articles/dependabot-github-actions-security/) - [GitHub Actions Script Injection: Safer Shell Steps](https://dsotn.com/articles/github-actions-script-injection/) - [GitHub Actions Cache Security: Avoid Poisoned Builds](https://dsotn.com/articles/github-actions-cache-security/) - [Artifact Attestations: Verify GitHub Actions Builds](https://dsotn.com/articles/artifact-attestations-github-actions/) - [Self-Hosted Runners: Secure GitHub Actions CI Builds](https://dsotn.com/articles/self-hosted-runners-security/) - [Reusable Workflows: Secure GitHub Actions Pipelines](https://dsotn.com/articles/reusable-workflows-security/) - [OIDC Trust Policies: Secure GitHub Actions Cloud Deploys](https://dsotn.com/articles/oidc-trust-policy-footguns/) - [Pin GitHub Actions to SHAs: Secure CI/CD Pipelines](https://dsotn.com/articles/pin-github-actions-sha/) - [GITHUB_TOKEN Permissions: Safer GitHub Actions CI/CD](https://dsotn.com/articles/github-token-permissions/) - [GitHub pull_request_target Security: Safe PR Workflows](https://dsotn.com/articles/pull-request-target-security/) - [GitHub Actions Security: 5 CI Risks to Fix Right Now](https://dsotn.com/articles/github-actions-security-risks/) ## Auxiliary Resources - [Sitemap](https://dsotn.com/sitemap.xml) - [Image credits](https://dsotn.com/CREDITS.md)