← zurück

Kategorie

Software supply chain

Sign and verify artifacts, and assess the security practices of the projects you depend on.

Im Vergleich

Software supply chain
ToolSterneLizenzBedingungenSelbst hostbarSpracheNeuestes ReleaseLetzter Push
Cosign6.3kApache-2.0Open SourceNeinGov3.1.32026-10-05
OpenSSF Scorecard5.7kApache-2.0Open SourceNeinGov5.5.02026-10-06
Notation498Apache-2.0Open SourceNeinGov1.3.22026-09-25

3 Tools

Cosign

Code signing and transparency for containers and binaries

Sprache
Go
Lizenz
Apache-2.0
Sterne
6.3k
Neuestes Release
v3.1.3
Letzter Push
2026-10-05