Projects with this topic
-
DevSecOps health check for GitLab Self-Managed instances.
Updated -
CI/CD Catalog components for FROM-scratch bootc images
Updated -
Unified compliance matrix for shipping software into regulated sectors. DoD, HIPAA, Finance, Education. Rust audit CLI.
Updated -
CI/CD catalog components for regulated container builds. Standardizes buildah, cosign signing, verification, and release across public-sector-tools projects. Consumed via GitLab CI component includes.
Updated -
Deployment shim for storyping. Downloads signed binary from storyping project, verifies cosign signature, extracts assets, and deploys to GitLab Pages. Not a standalone tool.
Updated -
-
This project contains shell scripts I use to create keys and certificates in order to explore and evaluate using cosign to attach certificates and certificate chains to OCI images.
Updated -
A quick demo project highlighting how once can sign a container image to later verify it when rolling it out in production
Updated -
Reusable single pipeline configuration unit for cosign sign and verify operations
Updated