Prototype in-toto attestation verifier based on ITE-10 and ITE-11 layouts
Updated 2025-08-12 21:29:04 +08:00
in-toto Attestation Framework
Updated 2025-08-08 08:58:37 +08:00
A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.
Updated 2025-08-07 22:55:51 +08:00
Software Supply Chain Attribute Integrity (SCAI) Demos and CLI tools
Updated 2025-08-06 01:20:22 +08:00
in-toto is a framework to protect supply chain integrity.
Updated 2025-08-05 15:31:06 +08:00
Archivista is a graph and storage service for in-toto attestations. Archivista enables the discovery and retrieval of attestations for software artifacts.
Updated 2025-07-13 15:54:20 +08:00
in-toto is a framework to secure the software supply chain.
Updated 2025-07-12 14:25:41 +08:00
Specification and other related documents.
Updated 2025-01-14 00:48:36 +08:00