Sign and Verify Software Artifacts using Sigstore Cosign #supplychain #security #softwareengineering
Policy Compliance with Sigstore: From Signing Software to Validating the Whole Softwar... Axel Simon
Who's Verifying Your Signatures? Approaching Private Container Image Signing - Ethan Lowman, Datadog