fepitre / debrebuild
Given a buildinfo file from a Debian package, generate instructions for attempting to reproduce the binary packages built from the associated source and build information.
☆17Updated 2 years ago
Alternatives and similar repositories for debrebuild:
Users that are interested in debrebuild are comparing it to the libraries listed below
- Supply Chain Query Tool☆13Updated 2 years ago
- An http proxy for reproducibility.☆19Updated 2 years ago
- Linux kernel - See Landlock issues☆40Updated last week
- A high level language for SELinux policy☆59Updated last month
- Extended verification for git tags☆133Updated 2 years ago
- sget is a keyless safe script retrieval and execution tool☆18Updated 3 years ago
- A specification for signing methods and formats used by Secure Systems Lab projects.☆73Updated 7 months ago
- Tooling and library for generation, validation and verification of supply chain metadata documents and frameworks☆31Updated last year
- Specification and other related documents.☆45Updated 2 months ago
- A Java implementation of in-toto runlib☆11Updated 8 months ago
- in-toto Enhancements☆19Updated last month
- Service to scan licenses from source code☆12Updated last year
- Darkfiles finds orphaned files in container images and makes them to bad deeds☆41Updated last year
- K8S Operator for Rekor☆20Updated 2 years ago
- A TUF repository and signing tool☆33Updated this week
- Cryptographic and general-purpose routines for Secure Systems Lab projects at NYU☆49Updated this week
- A Jenkins plugin to track steps and create in-toto link metadata☆11Updated 9 months ago
- Log monitor for Rekor to verify immutability and monitor entries☆31Updated this week
- ☆19Updated 4 months ago
- Go implementation for CNAB content trust verification using TUF, Notary, and in-toto☆31Updated last year
- Run any command transparently in a VM (this repo isn't part of Cappsule)☆27Updated 7 years ago
- A tool to list and diagnose bpf programs. (Who watches the watchers..? :)☆95Updated 4 years ago
- An Architecture for Trustworthy Digital Supply Chain Transparency Services☆12Updated this week
- Friends of in-toto! A place to record integrations and adoptions of the in-toto specification.☆14Updated this week
- A CLI tool for creating secure by design/default source repos.☆25Updated 8 months ago
- Website for OmniBOR, reproducible identifiers & fine-grained build dependency tracking for software artifacts.☆21Updated 2 months ago
- Enabling continuous integration for patch-based development workflows.☆80Updated 11 months ago
- Securing open-source package ecosystems by originating, validating, and augmenting build attestations.☆37Updated this week
- DSL language to write seccomp filters☆36Updated last year
- Common libseccomp container code written in Go☆14Updated 4 years ago