in-toto

in-toto

Geek Repo

A framework to protect software supply chain integrity

Home Page:https://in-toto.io/

Github PK Tool:Github PK Tool

in-toto's repositories

in-toto

in-toto is a framework to protect supply chain integrity.

Language:PythonLicense:NOASSERTIONStargazers:844Issues:40Issues:163

witness

Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact provenance.

Language:GoLicense:Apache-2.0Stargazers:365Issues:25Issues:160

attestation

in-toto Attestation Framework

Language:GoLicense:NOASSERTIONStargazers:201Issues:21Issues:122

in-toto-golang

A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.

Language:GoLicense:NOASSERTIONStargazers:114Issues:11Issues:78

demo

Securing Alice's, Bob's and Carl's software supply chain using in-toto

archivista

Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for software artifacts.

Language:GoLicense:Apache-2.0Stargazers:56Issues:10Issues:51

community

in-toto is a framework to secure the software supply chain.

docs

Specification and other related documents.

Language:PythonLicense:MITStargazers:34Issues:11Issues:40

in-toto-rs

A rust implementation of in-toto

Language:RustLicense:MITStargazers:32Issues:9Issues:15

scai-demos

Software Supply Chain Attribute Integrity (SCAI) Demos and CLI tools

Language:GoLicense:Apache-2.0Stargazers:18Issues:5Issues:1

ITE

in-toto Enhancements

go-witness

Go implementation of witness

Language:GoLicense:Apache-2.0Stargazers:16Issues:7Issues:18

attestation-verifier

Prototype in-toto attestation verifier based on ITE-10 and ITE-11 layouts

Language:GoLicense:NOASSERTIONStargazers:13Issues:4Issues:3

in-toto-java

A Java implementation of in-toto runlib

Language:JavaLicense:MITStargazers:11Issues:7Issues:12

friends

Friends of in-toto! A place to record integrations and adoptions of the in-toto specification.

apt-transport-in-toto

in-toto transport for apt

Language:PythonLicense:NOASSERTIONStargazers:8Issues:8Issues:18

github-action

in-toto provenance github action

Language:JavaScriptStargazers:7Issues:7Issues:5
Language:PythonStargazers:3Issues:0Issues:0

rebuilderd

Independent verification of binary packages - reproducible builds

Language:RustLicense:GPL-3.0Stargazers:3Issues:3Issues:1

in-toto-jenkins-plugin

A Jenkins plugin to track steps and create in-toto link metadata

Language:JavaLicense:MITStargazers:2Issues:1Issues:3

layout-web-tool

A flask app that helps to create, modify and visualize in-toto layouts.

Language:PythonLicense:MITStargazers:2Issues:6Issues:33

image-resources

This repo contains image-related resources for in-toto

Language:PythonStargazers:1Issues:6Issues:0

demo-opensuse

in-toto openSUSE demo

Language:PythonStargazers:0Issues:5Issues:0
Language:PythonStargazers:0Issues:5Issues:0

rebuilderd-website

Arch Linux Rebuilderd status webpage (read-only mirror)

Language:JavaScriptLicense:MITStargazers:0Issues:1Issues:0

securesystemslib

Cryptographic and general-purpose routines for Secure Systems Lab projects at NYU

Language:PythonLicense:MITStargazers:0Issues:3Issues:3
Stargazers:0Issues:4Issues:0