duo-labs / sharedsignals
Python tools for using OpenID's Shared Signals Framework (including CAEP)
☆18Updated 2 months ago
Alternatives and similar repositories for sharedsignals
Users that are interested in sharedsignals are comparing it to the libraries listed below
Sorting:
- An Architecture for Trustworthy Digital Supply Chain Transparency Services☆12Updated last week
- OpenID Shared Signals and Events (SSE) / Continuous Access Evaluation Protocol (CAEP) / Risk Incident Sharing and Coordination (RISC) JSO…☆12Updated 11 months ago
- A runbook for the PSF, for TUF key setup and initial signing operations to bootstrap signing for PyPI.☆15Updated 2 years ago
- Website for OmniBOR, reproducible identifiers & fine-grained build dependency tracking for software artifacts.☆21Updated 3 months ago
- A specification for signing methods and formats used by Secure Systems Lab projects.☆76Updated 8 months ago
- Proposed standard for an Authorization API☆74Updated this week
- This tool allows using a SPIFFE JWT to authenticate to AWS APIs☆34Updated 11 months ago
- OpenID Shared Signals Working Group Repository☆62Updated this week
- The Great Multi-Factor Authentication (MFA) Distribution Project of the Open Source Security Foundation (OpenSSF). We work to distribute …☆54Updated 3 years ago
- Death & The Digital Estate Community Group☆23Updated this week
- Connect compliance frameworks like SOC 2, GDPR, and ISO 27001 using Secure Control Frameworks mappings.☆13Updated 7 months ago
- Agenda and minutes of meetings of the Federated Identity Community Group☆26Updated 2 months ago
- ☆62Updated 10 months ago
- OpenID IPSIE Working Group Repository☆27Updated last week
- Test tool for CTAP2 authenticators☆56Updated last year
- in-toto is a framework to secure the software supply chain.☆70Updated 4 months ago
- Proof-of-concept SLSA provenance generator for GitHub Actions☆99Updated 2 years ago
- A TUF repository and signing tool☆33Updated this week
- PKI Meta-Linter☆80Updated this week
- TUF repository for Sigstore trust root☆103Updated this week
- A framework for verifying PKI structures☆109Updated this week
- Containerized version of the Shibboleth IdP running on AWS with AWS Secrets Manager and AWS CodePipeline integrations. You can submit fe…☆28Updated last month
- VGS edition of Google's safe and hermetically sealed Starlark language - a non-Turing complete subset of Python 3.☆32Updated 2 weeks ago
- vexctl is a tool to attest VEX impact statements☆44Updated 2 years ago
- Umbrella Repository Service for TUF☆50Updated this week
- Hexa Policy Orchestrator enables you to manage all of your access policies consistently across software providers.☆102Updated this week
- Report on quality of SBOM contents☆17Updated 5 months ago
- Software Supply Chain Attribute Integrity (SCAI) Demos and CLI tools☆18Updated this week
- A proof-of-concept SLSA provenance generator for Jenkins☆21Updated 9 months ago
- This package provides a python implementation of the Atlassian Service to Service Authentication specification.☆24Updated 5 months ago