sigstore / docs
Sigstore documentation
☆84Updated this week
Alternatives and similar repositories for docs:
Users that are interested in docs are comparing it to the libraries listed below
- Protocol Buffer specifications☆27Updated this week
- TUF repository for Sigstore trust root☆95Updated this week
- Go library for Sigstore signing and verification☆58Updated this week
- CLOWarden is a tool that manages access to resources across multiple services☆50Updated this week
- Helm charts for sigstore project☆71Updated this week
- Search Rekor for entries☆31Updated 2 weeks ago
- 📈CNCF-created tool for analyzing and graphing developer contributions☆87Updated last week
- A CLI used to work with the Wolfi OSS project☆60Updated this week
- CLOMonitor is a tool that periodically checks open source projects repositories to verify they meet certain project health best practices☆123Updated this week
- Automate copyright headers and license files at scale☆92Updated this week
- Verify provenance from SLSA compliant builders☆250Updated 3 weeks ago
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆60Updated this week
- GitVote is a GitHub application that allows holding a vote on issues and pull requests☆121Updated this week
- Cosign Github Action☆140Updated last month
- Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supp…☆128Updated this week
- ☆17Updated this week
- Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for so…☆80Updated this week
- A ContainerD shim for running Spin Applications.☆96Updated last week
- Kubernetes KCL Operator and Webhook Server☆18Updated last week
- Demo app duplicated in 5 languages (Go/JavaScript/Python/Ruby/Rust) showing how to go from source code to container image using melange+a…☆33Updated last year
- The Civo Implementation of an OpenCP provider☆25Updated 2 years ago
- in-toto is a framework to secure the software supply chain.☆70Updated 2 months ago
- A Kubernetes operator to manage Runtime Classes☆45Updated this week
- HTTP/3-enable existing HTTP apps. Leverage HTTP3 native features and auto-enable workload identity (SPIFFE), AuthN (mTLS/x509, OIDC/Auth0…☆74Updated last year
- Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.☆63Updated last week
- Publish a signed build provenance from your GitHub Actions workflow☆63Updated 10 months ago
- Tooling and library for generation, validation and verification of supply chain metadata documents and frameworks☆31Updated last year
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆33Updated last month
- A collection of reusable Github Actions workflows.☆128Updated this week
- Kubernetes-native API gateway for microservices built on the Envoy Proxy with built-in features for securing and managing traffic☆25Updated 3 weeks ago