Skip to content
@sigstore

sigstore

Software Supply Chain Security
sigstore logo

Sign. Verify. Protect. Making sure your software is what it claims to be.

Learn more at https://sigstore.dev/

Pinned Loading

  1. cosign cosign Public

    Code signing and transparency for containers and binaries

    Go 5.4k 657

  2. fulcio fulcio Public

    Sigstore OIDC PKI

    Go 767 160

  3. rekor rekor Public

    Software Supply Chain Transparency Log

    Go 1k 190

  4. sigstore-rs sigstore-rs Public

    An experimental Rust crate for sigstore

    Rust 210 66

  5. sigstore-python sigstore-python Public

    A Sigstore client written in Python

    Python 295 63

  6. sigstore-java sigstore-java Public

    java clients for sigstore

    Java 66 25

Repositories

Showing 10 of 65 repositories
  • timestamp-authority Public

    RFC3161 Timestamp Authority

    sigstore/timestamp-authority’s past year of commit activity
    Go 105 Apache-2.0 48 3 1 Updated Nov 18, 2025
  • sigstore-rs Public

    An experimental Rust crate for sigstore

    sigstore/sigstore-rs’s past year of commit activity
    Rust 210 Apache-2.0 66 43 (11 issues need help) 15 Updated Nov 18, 2025
  • sigstore-conformance Public

    Conformance testing for Sigstore clients

    sigstore/sigstore-conformance’s past year of commit activity
    Python 11 16 33 0 Updated Nov 18, 2025
  • terraform-modules Public

    Terraform modules for Sigstore cloud infrastructure

    sigstore/terraform-modules’s past year of commit activity
    HCL 3 Apache-2.0 7 1 1 Updated Nov 18, 2025
  • protobuf-specs Public

    Sigstore's Protocol Buffer specifications

    sigstore/protobuf-specs’s past year of commit activity
    Makefile 33 Apache-2.0 45 31 8 Updated Nov 18, 2025
  • root-signing-staging Public

    Staging TUF repository for Sigstore trust root

    sigstore/root-signing-staging’s past year of commit activity
    10 Apache-2.0 10 7 3 Updated Nov 18, 2025
  • sigstore-probers Public

    Probers for sigstore infrastructure

    sigstore/sigstore-probers’s past year of commit activity
    Go 6 Apache-2.0 15 2 (1 issue needs help) 2 Updated Nov 18, 2025
  • sigstore-js Public

    Code-signing for npm packages

    sigstore/sigstore-js’s past year of commit activity
    TypeScript 172 Apache-2.0 32 8 7 Updated Nov 17, 2025
  • gh-action-sigstore-python Public

    A GitHub Action for sigstore-python

    sigstore/gh-action-sigstore-python’s past year of commit activity
    Python 63 Apache-2.0 13 10 0 Updated Nov 17, 2025
  • sigstore Public

    Common go library shared across sigstore services and clients

    sigstore/sigstore’s past year of commit activity
    Go 490 Apache-2.0 143 20 10 Updated Nov 17, 2025