GitHub App
Repository selection, signed webhook delivery, immutable source ingestion, pull-request checks, and managed-run replay use a GitHub App.
Integrations
StackShip integrates with GitHub for source and checks; AWS, Google Cloud, and Azure for workload identity; and encrypted provider secrets for providers without federation.
Repository selection, signed webhook delivery, immutable source ingestion, pull-request checks, and managed-run replay use a GitHub App.
Managed runs can receive short-lived AWS, Google Cloud, or Azure credentials scoped to the execution phase.
Other providers can use encrypted secrets that are released only while a run executes. All managed runs execute on StackShip-managed infrastructure.
Publish versioned OpenTofu modules from approved GitHub repositories to your organization's private module registry. Pushing a semver tag publishes an immutable, checksummed version that resolves with the same StackShip credentials runs already use.
Availability
Anyone can create an account and an organization. StackShip currently has no billing, paid tiers, checkout, or published commercial SLA.