← 戻る

カテゴリ

Software supply chain

Sign and verify artifacts, and assess the security practices of the projects you depend on.

比較表

Software supply chain
ツールスターライセンス利用条件セルフホスト言語最新リリース最終プッシュ
Cosign6.3kApache-2.0オープンソース不可Gov3.1.32026-10-05
OpenSSF Scorecard5.7kApache-2.0オープンソース不可Gov5.5.02026-10-06
Notation498Apache-2.0オープンソース不可Gov1.3.22026-09-25

3件のツール

Cosign

Code signing and transparency for containers and binaries

言語
Go
ライセンス
Apache-2.0
スター
6.3k
最新リリース
v3.1.3
最終プッシュ
2026-10-05
Notation

A CLI tool to sign and verify artifacts

言語
Go
ライセンス
Apache-2.0
スター
498
最新リリース
v1.3.2
最終プッシュ
2026-09-25