youtube image
From YouTube: OCB: sigstore, Software Signing for All - Luke Hinds (Red Hat)

Description

Luke Hinds (Red Hat) will discuss project sigstore, a new Linux Foundation project designed to make the signing of software much easier and accessible for developers.

sigstore is a project with the goal of providing a public good / non-profit service to improve the open source software supply chain by easing the adoption of cryptographic software signing, backed by transparency log technologies.

sigstore seeks to empower software developers to securely sign software artifacts such as release files, container images, binaries, bill of material manifests, and more. Signing materials are then stored in a tamper-resistant public log.