Skip to content
@sigstore

sigstore

Software Supply Chain Security
sigstore logo

Sign. Verify. Protect. Making sure your software is what it claims to be.

Learn more at https://sigstore.dev/

Pinned Loading

  1. cosign cosign Public

    Code signing and transparency for containers and binaries

    Go 4.8k 573

  2. fulcio fulcio Public

    Sigstore OIDC PKI

    Go 698 146

  3. rekor rekor Public

    Software Supply Chain Transparency Log

    Go 940 175

  4. sigstore-rs sigstore-rs Public

    An experimental Rust crate for sigstore

    Rust 186 58

  5. sigstore-python sigstore-python Public

    A Sigstore client written in Python

    Python 256 54

  6. sigstore-java sigstore-java Public

    java clients for sigstore

    Java 53 21

Repositories

Showing 10 of 62 repositories
  • timestamp-authority Public

    RFC3161 Timestamp Authority

    sigstore/timestamp-authority’s past year of commit activity
    Go 83 Apache-2.0 40 5 2 Updated Mar 28, 2025
  • rekor-tiles Public

    Signature Transparency Log designed for ease of use, low cost, and minimal maintenance

    sigstore/rekor-tiles’s past year of commit activity
    Go 5 Apache-2.0 6 77 7 Updated Mar 28, 2025
  • sigstore-rs Public

    An experimental Rust crate for sigstore

    sigstore/sigstore-rs’s past year of commit activity
    Rust 186 Apache-2.0 58 39 (11 issues need help) 10 Updated Mar 28, 2025
  • protobuf-specs Public

    Protocol Buffer specifications

    sigstore/protobuf-specs’s past year of commit activity
    Makefile 27 Apache-2.0 33 30 7 Updated Mar 28, 2025
  • root-signing-staging Public

    Staging TUF repository for Sigstore trust root

    sigstore/root-signing-staging’s past year of commit activity
    7 Apache-2.0 7 6 0 Updated Mar 28, 2025
  • model-transparency Public

    Supply chain security for ML

    sigstore/model-transparency’s past year of commit activity
    Python 133 Apache-2.0 33 22 (1 issue needs help) 1 Updated Mar 27, 2025
  • root-signing Public

    TUF repository for Sigstore trust root

    sigstore/root-signing’s past year of commit activity
    Makefile 96 Apache-2.0 84 15 0 Updated Mar 27, 2025
  • fulcio Public

    Sigstore OIDC PKI

    sigstore/fulcio’s past year of commit activity
    Go 698 Apache-2.0 146 48 (1 issue needs help) 7 Updated Mar 27, 2025
  • community Public

    General sigstore community repo

    sigstore/community’s past year of commit activity
    41 Apache-2.0 49 16 1 Updated Mar 27, 2025
  • sigstore Public

    Common go library shared across sigstore services and clients

    sigstore/sigstore’s past year of commit activity
    Go 478 Apache-2.0 128 19 10 Updated Mar 27, 2025