sigstore / sigstore-python
A Sigstore client written in Python
☆261Updated this week
Alternatives and similar repositories for sigstore-python
Users that are interested in sigstore-python are comparing it to the libraries listed below
Sorting:
- A GitHub Action for sigstore-python☆52Updated 2 weeks ago
- This is a repository of vulnerability advisories for projects in scope for the Python Software Foundation CVE Numbering Authority (CNA)☆35Updated 2 months ago
- A GitHub Action for pip-audit☆74Updated last week
- Data about packages and maintainers on PyPI☆128Updated 3 weeks ago
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆91Updated 2 weeks ago
- Verify provenance from SLSA compliant builders☆261Updated last month
- Python implementation of OWASP CycloneDX☆80Updated this week
- Software Bill-of-Materials documents for Python packages☆37Updated 2 months ago
- Validation library for simple check on `pyproject.toml`☆158Updated last week
- A Python library to parse, validate and create SPDX documents.☆209Updated 3 weeks ago
- Cryptographic and general-purpose routines for Secure Systems Lab projects at NYU☆49Updated this week
- Dlint is a tool for encouraging best coding practices and helping ensure Python code is secure.☆166Updated 6 months ago
- Umbrella Repository Service for TUF☆50Updated this week
- Format agnostic SBOM tooling☆106Updated this week
- Sigstore OIDC PKI☆720Updated this week
- 🕵️ File browser for distributions on PyPI☆103Updated this week
- Packaging improvements that could be funded☆54Updated 2 years ago
- Advisory database for Python packages published on pypi.org☆288Updated this week
- Verify certificates using OS trust stores☆184Updated 3 months ago
- A security layer for Git repositories☆519Updated this week
- Log monitor for Rekor to verify immutability and monitor entries☆32Updated this week
- Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase…☆73Updated last month
- Scans Python packages for abi3 violations and inconsistencies☆110Updated this week
- Throw a tag at it and it comes back with a checksum.☆133Updated this week
- Enrich SBOMs with data from third party services☆172Updated last month
- Changelog management tool☆278Updated last week
- Open Source Vulnerability schema.☆200Updated last week
- in-toto Attestation Framework☆272Updated this week
- Utility library to parse, normalize and compare License expressions for Python using a boolean logic engine. For expressions using SPDX …☆66Updated last month
- A decorator to aid in annotating logs for easier reading and searching☆85Updated this week