sigstore / sigstore-python
A Sigstore client written in Python
☆256Updated this week
Alternatives and similar repositories for sigstore-python:
Users that are interested in sigstore-python are comparing it to the libraries listed below
- This is a repository of vulnerability advisories for projects in scope for the Python Software Foundation CVE Numbering Authority (CNA)☆31Updated this week
- A GitHub Action for sigstore-python☆50Updated last month
- Data about packages and maintainers on PyPI☆126Updated 3 months ago
- A GitHub Action for pip-audit☆73Updated last month
- Python implementation of OWASP CycloneDX☆77Updated this week
- Umbrella Repository Service for TUF☆45Updated this week
- A Python library to parse, validate and create SPDX documents.☆202Updated 5 months ago
- Format agnostic SBOM tooling☆100Updated this week
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆79Updated this week
- Software Bill-of-Materials documents for Python packages☆35Updated last week
- A security layer for Git repositories☆493Updated this week
- Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase…☆73Updated 4 months ago
- Generate SBOMs with gh CLI☆178Updated 5 months ago
- Verify provenance from SLSA compliant builders☆246Updated this week
- Open Source Vulnerability schema.☆193Updated this week
- Throw a tag at it and it comes back with a checksum.☆112Updated last week
- Dlint is a tool for encouraging best coding practices and helping ensure Python code is secure.☆164Updated 4 months ago
- Advisory database for Python packages published on pypi.org☆274Updated this week
- A decorator to aid in annotating logs for easier reading and searching☆84Updated this week
- Log monitor for Rekor to verify immutability and monitor entries☆30Updated last week
- A tool to generate a SBOM (Software Bill of Materials) for an installed Python module☆28Updated last month
- Validation library for simple check on `pyproject.toml`☆148Updated this week
- OpenVEX Specification☆141Updated 7 months ago
- Enrich SBOMs with data from third party services☆159Updated 3 weeks ago
- Cryptographic and general-purpose routines for Secure Systems Lab projects at NYU☆49Updated last week
- Tooling and library for generation, validation and verification of supply chain metadata documents and frameworks☆31Updated last year
- A TUF repository and signing tool☆28Updated this week
- 🕵️ File browser for distributions on PyPI☆101Updated last month
- Sigstore OIDC PKI☆683Updated this week
- Generate a score for your sbom to understand if it will actually be useful.☆226Updated 6 months ago