sigstore / sigstore-python
A Sigstore client written in Python
☆232Updated this week
Related projects ⓘ
Alternatives and complementary repositories for sigstore-python
- A GitHub Action for sigstore-python☆46Updated last month
- A GitHub Action for pip-audit☆68Updated last week
- This is a repository of vulnerability advisories for projects in scope for the Python Software Foundation CVE Numbering Authority (CNA)☆28Updated last week
- Data about packages and maintainers on PyPI☆123Updated this week
- Verify provenance from SLSA compliant builders☆230Updated 3 weeks ago
- Umbrella Repository Service for TUF☆41Updated this week
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆72Updated last month
- Format agnostic SBOM tooling☆80Updated this week
- Dlint is a tool for encouraging best coding practices and helping ensure Python code is secure.☆164Updated 3 weeks ago
- A Python library to parse, validate and create SPDX documents.☆189Updated last month
- Python implementation of OWASP CycloneDX☆70Updated this week
- Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase…☆71Updated 3 weeks ago
- TUF repository for Sigstore trust root☆88Updated this week
- Software Bill-of-Materials documents for Python packages☆22Updated last week
- Advisory database for Python packages published on pypi.org☆264Updated this week
- A security layer for Git repositories☆465Updated this week
- Generate SBOMs with gh CLI☆166Updated 2 months ago
- Validation library for simple check on `pyproject.toml`☆135Updated this week
- Log monitor for Rekor to verify immutability and monitor entries☆26Updated this week
- Open Source Vulnerability schema.☆185Updated this week
- Pytest plugin to annotate failed tests with a workflow command for GitHub Actions☆140Updated 2 weeks ago
- A CLI and set of pre-commit hooks for jsonschema validation with built-in support for GitHub Workflows, Renovate, Azure Pipelines, and mo…☆219Updated this week
- OpenSSF Working Group on Securing Software Repositories☆91Updated 3 weeks ago
- A tool to generate a SBOM (Software Bill of Materials) for an installed Python module☆25Updated last month
- Safe, minimal import sorting for Python projects.☆190Updated last month
- Enrich SBOMs with data from third party services☆117Updated 2 weeks ago
- Throw a tag at it and it comes back with a checksum.☆87Updated this week
- Verify certificates using OS trust stores☆161Updated 3 weeks ago
- Packaging improvements that could be funded☆52Updated last year
- Python module for OpenPGP written in Rust.☆52Updated last month