Skip to content
@sigstore

sigstore

Software Supply Chain Security
sigstore logo

Sign. Verify. Protect. Making sure your software is what it claims to be.

Learn more at https://sigstore.dev/

Pinned Loading

  1. cosign cosign Public

    Code signing and transparency for containers and binaries

    Go 4.6k 550

  2. fulcio fulcio Public

    Sigstore OIDC PKI

    Go 666 141

  3. rekor rekor Public

    Software Supply Chain Transparency Log

    Go 912 164

  4. sigstore-rs sigstore-rs Public

    An experimental Rust crate for sigstore

    Rust 177 54

  5. sigstore-python sigstore-python Public

    A Sigstore client written in Python

    Python 236 50

  6. sigstore-java sigstore-java Public

    java clients for sigstore

    Java 46 20

Repositories

Showing 10 of 60 repositories
  • sigstore-rs Public

    An experimental Rust crate for sigstore

    sigstore/sigstore-rs’s past year of commit activity
    Rust 177 Apache-2.0 54 36 (11 issues need help) 7 Updated Dec 30, 2024
  • root-signing Public

    TUF repository for Sigstore trust root

    sigstore/root-signing’s past year of commit activity
    Makefile 92 Apache-2.0 81 18 0 Updated Dec 30, 2024
  • sigstore Public

    Common go library shared across sigstore services and clients

    sigstore/sigstore’s past year of commit activity
    Go 454 Apache-2.0 124 34 17 Updated Dec 30, 2024
  • policy-controller Public

    Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supply-chain metadata from cosign

    sigstore/policy-controller’s past year of commit activity
    Go 125 56 53 6 Updated Dec 30, 2024
  • sigstore-js Public

    Code-signing for npm packages

    sigstore/sigstore-js’s past year of commit activity
    TypeScript 159 Apache-2.0 23 4 1 Updated Dec 30, 2024
  • helm-charts Public

    Helm charts for sigstore project

    sigstore/helm-charts’s past year of commit activity
    Smarty 66 Apache-2.0 92 29 18 Updated Dec 30, 2024
  • cosign Public

    Code signing and transparency for containers and binaries

    sigstore/cosign’s past year of commit activity
    Go 4,610 Apache-2.0 550 232 (1 issue needs help) 18 Updated Dec 30, 2024
  • scaffolding Public

    Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.

    sigstore/scaffolding’s past year of commit activity
    HCL 61 Apache-2.0 58 9 1 Updated Dec 30, 2024
  • rekor-search-ui Public

    Search Rekor for entries

    sigstore/rekor-search-ui’s past year of commit activity
    TypeScript 30 Apache-2.0 24 6 5 Updated Dec 30, 2024
  • rekor Public

    Software Supply Chain Transparency Log

    sigstore/rekor’s past year of commit activity
    Go 912 Apache-2.0 164 75 6 Updated Dec 30, 2024