Publish a signed build provenance from your GitHub Actions workflow
☆63May 21, 2024Updated last year
Alternatives and similar repositories for generate-build-provenance
Users that are interested in generate-build-provenance are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Submit SBOMs to GitHub's dependency submission API☆18Dec 4, 2025Updated 3 months ago
- ☆58Jun 1, 2022Updated 3 years ago
- Supply Chain Query Tool☆13May 25, 2022Updated 3 years ago
- Action for generating build provenance attestations for workflow artifacts☆913Mar 4, 2026Updated 3 weeks ago
- Monorepo for Identity Box☆20Aug 11, 2024Updated last year
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- An SBOM query language and associated utilities☆55Jan 22, 2024Updated 2 years ago
- GitHub actions for the chainguard-images☆21Mar 16, 2026Updated last week
- Tooling and library for generation, validation and verification of supply chain metadata documents and frameworks☆33Apr 22, 2025Updated 11 months ago
- ☆40Feb 2, 2022Updated 4 years ago
- Run ORT in your GitHub action workflow to do licensing, security and best practices checks and generate reports/SBOMs☆33Feb 24, 2026Updated last month
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆108Mar 14, 2026Updated last week
- ☆23Oct 26, 2021Updated 4 years ago
- A GitHub Action for sigstore-python☆64Updated this week
- A pure-Rust implementation of Curve41417☆16Aug 28, 2015Updated 10 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Macaron is an extensible supply-chain security analysis framework from Oracle Labs that supports a wide range of build systems and CI/CD …☆189Updated this week
- Libs and tools used to build all *-version tools for GitHub Actions☆30Mar 2, 2026Updated 3 weeks ago
- AWS ECR scanning slack notifications☆13Jul 19, 2023Updated 2 years ago
- Official GitHub Action for OpenSSF Scorecard.☆366Updated this week
- Go implementation for CNAB content trust verification using TUF, Notary, and in-toto☆31Jul 5, 2023Updated 2 years ago
- foundry + ethers☆22Feb 2, 2022Updated 4 years ago
- Disable copilot extension when certain files are open listed in a .copilotignore file☆21Nov 7, 2024Updated last year
- Go library to download OpenTofu with minimal dependencies☆17Oct 27, 2025Updated 4 months ago
- MVP for updated PEP 543 proposal☆14Feb 13, 2026Updated last month
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Flancian's digital garden☆27Mar 16, 2026Updated last week
- Contains primitives for marshaling/unmarshaling Unix timestamp/epoch to/from built-in time.Time type in JSON☆17Feb 25, 2024Updated 2 years ago
- A Java implementation of in-toto runlib☆11Jul 23, 2024Updated last year
- Sandwood - A JVM based Java like Probabilistic Programming Language☆34Mar 2, 2026Updated 3 weeks ago
- Verifying the optimization phases of the GraalVM compiler☆14Jan 13, 2025Updated last year
- Build & Download 2700+ popular brands Badge, SVG, Hex & so on to use in GitHub Markdown or Any Web Pages wth fast, reliable with amazing …☆15Nov 25, 2023Updated 2 years ago
- Rust language proof-carrying data framework☆35Mar 18, 2026Updated last week
- An interactive EVM repl/shell.☆32Sep 30, 2021Updated 4 years ago
- Example repo showing how to build wheels with cibuildwheel and automatically upload to PyPI on every tag☆15Nov 1, 2021Updated 4 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Rez CLI/GUI tool for installing packages from developer package repositories.☆12Nov 25, 2021Updated 4 years ago
- A helm plugin for ArgoCD to support the lookup function☆10Nov 16, 2022Updated 3 years ago
- Docker container to manage LDAP Users and Groups (ldap-useradmin)☆11Jan 24, 2017Updated 9 years ago
- Fully client-side, anonymous, and encrypted multisig.☆18Dec 12, 2025Updated 3 months ago
- Repository with Custom Resource Definition files for validation purposes☆14Updated this week
- Verify provenance from SLSA compliant builders☆313Mar 9, 2026Updated 2 weeks ago
- GitHub action to produce a SBOM report from a given Black Duck project☆12Feb 5, 2026Updated last month