Skip to content
@sigstore

sigstore

Software Supply Chain Security
sigstore logo

Sign. Verify. Protect. Making sure your software is what it claims to be.

Learn more at https://sigstore.dev/

Pinned Loading

  1. cosign cosign Public

    Code signing and transparency for containers and binaries

    Go 4.7k 557

  2. fulcio fulcio Public

    Sigstore OIDC PKI

    Go 672 141

  3. rekor rekor Public

    Software Supply Chain Transparency Log

    Go 927 168

  4. sigstore-rs sigstore-rs Public

    An experimental Rust crate for sigstore

    Rust 185 56

  5. sigstore-python sigstore-python Public

    A Sigstore client written in Python

    Python 247 51

  6. sigstore-java sigstore-java Public

    java clients for sigstore

    Java 50 21

Repositories

Showing 10 of 60 repositories
  • sigstore-go Public

    Go library for Sigstore signing and verification

    sigstore/sigstore-go’s past year of commit activity
    Go 54 Apache-2.0 27 16 7 Updated Jan 24, 2025
  • sigstore-python Public

    A Sigstore client written in Python

    sigstore/sigstore-python’s past year of commit activity
    Python 247 51 33 (1 issue needs help) 2 Updated Jan 24, 2025
  • sigstore-java Public

    java clients for sigstore

    sigstore/sigstore-java’s past year of commit activity
    Java 50 Apache-2.0 21 22 8 Updated Jan 24, 2025
  • policy-controller Public

    Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supply-chain metadata from cosign

    sigstore/policy-controller’s past year of commit activity
    Go 126 56 53 15 Updated Jan 24, 2025
  • root-signing-staging Public

    Staging TUF repository for Sigstore trust root

    sigstore/root-signing-staging’s past year of commit activity
    6 Apache-2.0 7 7 0 Updated Jan 24, 2025
  • timestamp-authority Public

    RFC3161 Timestamp Authority

    sigstore/timestamp-authority’s past year of commit activity
    Go 77 Apache-2.0 40 9 3 Updated Jan 24, 2025
  • sigstore-devops-tools Public

    Tools & services used to help in the development flow of sigstore

    sigstore/sigstore-devops-tools’s past year of commit activity
    Go 5 Apache-2.0 3 0 0 Updated Jan 24, 2025
  • sigstore-rs Public

    An experimental Rust crate for sigstore

    sigstore/sigstore-rs’s past year of commit activity
    Rust 185 Apache-2.0 56 36 (11 issues need help) 7 Updated Jan 24, 2025
  • helm-sigstore Public

    Plugin for Helm to integrate the sigstore ecosystem

    sigstore/helm-sigstore’s past year of commit activity
    Go 60 Apache-2.0 13 3 (1 issue needs help) 2 Updated Jan 24, 2025
  • root-signing Public

    TUF repository for Sigstore trust root

    sigstore/root-signing’s past year of commit activity
    Makefile 93 Apache-2.0 81 21 1 Updated Jan 24, 2025