Skip to content
@sigstore

sigstore

Software Supply Chain Security
sigstore logo

Sign. Verify. Protect. Making sure your software is what it claims to be.

Learn more at https://sigstore.dev/

Pinned Loading

  1. cosign cosign Public

    Code signing and transparency for containers and binaries

    Go 4.9k 582

  2. fulcio fulcio Public

    Sigstore OIDC PKI

    Go 711 148

  3. rekor rekor Public

    Software Supply Chain Transparency Log

    Go 951 176

  4. sigstore-rs sigstore-rs Public

    An experimental Rust crate for sigstore

    Rust 187 58

  5. sigstore-python sigstore-python Public

    A Sigstore client written in Python

    Python 259 55

  6. sigstore-java sigstore-java Public

    java clients for sigstore

    Java 54 21

Repositories

Showing 10 of 62 repositories
  • rekor-tiles Public

    Signature Transparency Log designed for ease of use, low cost, and minimal maintenance

    sigstore/rekor-tiles’s past year of commit activity
    Go 6 Apache-2.0 8 81 1 Updated Apr 20, 2025
  • root-signing Public

    TUF repository for Sigstore trust root

    sigstore/root-signing’s past year of commit activity
    Makefile 99 Apache-2.0 84 15 0 Updated Apr 20, 2025
  • root-signing-staging Public

    Staging TUF repository for Sigstore trust root

    sigstore/root-signing-staging’s past year of commit activity
    7 Apache-2.0 7 7 1 Updated Apr 20, 2025
  • model-transparency Public

    Supply chain security for ML

    sigstore/model-transparency’s past year of commit activity
    Python 154 Apache-2.0 34 22 (2 issues need help) 1 Updated Apr 18, 2025
  • sigstore-python Public

    A Sigstore client written in Python

    sigstore/sigstore-python’s past year of commit activity
    Python 259 55 35 (1 issue needs help) 1 Updated Apr 18, 2025
  • sigstore-go Public

    Go library for Sigstore signing and verification

    sigstore/sigstore-go’s past year of commit activity
    Go 61 Apache-2.0 31 18 9 Updated Apr 18, 2025
  • gitsign Public

    Keyless Git signing using Sigstore

    sigstore/gitsign’s past year of commit activity
    Go 992 69 23 (1 issue needs help) 3 Updated Apr 18, 2025
  • timestamp-authority Public

    RFC3161 Timestamp Authority

    sigstore/timestamp-authority’s past year of commit activity
    Go 89 Apache-2.0 40 2 1 Updated Apr 18, 2025
  • protobuf-specs Public

    Sigstore's Protocol Buffer specifications

    sigstore/protobuf-specs’s past year of commit activity
    Makefile 28 Apache-2.0 37 31 7 Updated Apr 18, 2025
  • terraform-modules Public

    Terraform modules for Sigstore cloud infrastructure

    sigstore/terraform-modules’s past year of commit activity
    HCL 0 Apache-2.0 4 1 1 Updated Apr 17, 2025