sigstore / sigstore-python
A Sigstore client written in Python
☆249Updated this week
Alternatives and similar repositories for sigstore-python:
Users that are interested in sigstore-python are comparing it to the libraries listed below
- A GitHub Action for sigstore-python☆48Updated 2 weeks ago
- A GitHub Action for pip-audit☆72Updated 3 weeks ago
- Data about packages and maintainers on PyPI☆125Updated 2 months ago
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆77Updated last week
- Verify provenance from SLSA compliant builders☆241Updated this week
- This is a repository of vulnerability advisories for projects in scope for the Python Software Foundation CVE Numbering Authority (CNA)☆30Updated last month
- A Python library to parse, validate and create SPDX documents.☆198Updated 4 months ago
- Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase…☆72Updated 2 months ago
- Python implementation of OWASP CycloneDX☆73Updated this week
- Format agnostic SBOM tooling☆96Updated this week
- Umbrella Repository Service for TUF☆45Updated this week
- A tool to generate a SBOM (Software Bill of Materials) for an installed Python module☆28Updated this week
- Validation library for simple check on `pyproject.toml`☆144Updated this week
- A security layer for Git repositories☆480Updated this week
- Advisory database for Python packages published on pypi.org☆271Updated this week
- Check your Python environments for vulnerable Open Source packages with OSS Index or Sonatype Nexus Lifecycle.☆116Updated 2 months ago
- ☆175Updated this week
- Software Bill-of-Materials documents for Python packages☆29Updated last month
- PURL to CPE Relationship mapping project.☆82Updated this week
- Dlint is a tool for encouraging best coding practices and helping ensure Python code is secure.☆162Updated 2 months ago
- Resolve abstract dependencies into concrete ones☆145Updated last month
- Log monitor for Rekor to verify immutability and monitor entries☆30Updated this week
- Verify certificates using OS trust stores☆173Updated 2 weeks ago
- Open Source Vulnerability schema.☆190Updated this week
- Python module for OpenPGP written in Rust.☆52Updated 2 weeks ago
- Enrich SBOMs with data from third party services☆152Updated this week
- Pytest plugin to annotate failed tests with a workflow command for GitHub Actions☆149Updated last week
- A CLI and set of pre-commit hooks for jsonschema validation with built-in support for GitHub Workflows, Renovate, Azure Pipelines, and mo…☆232Updated this week
- TUF repository for Sigstore trust root☆95Updated this week
- 🕵️ File browser for distributions on PyPI☆99Updated this week