Hacker News new | past | comments | ask | show | jobs | submit login

agree, sigstore is an awesome project when you delve into the architecture. transparency logs and ephemeral key signing!



You'll probably enjoy how it is being used to secure the Arch Linux package ecosystem then:

https://github.com/kpcyrd/pacman-bintrans




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: