Azure / Azure/obom

OBOM should support handling of signed and optionally transparent SBOMS

Open
#29 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Go
Stars
6
Forks
19
Avg merge
3d 13h
Merged PRs (30d)
1

Description

OBOM should support handling of signed and optionally transparent SBOMs that use Indirect (CoseHashEnvelope) Cose signatures which are attached to the SBOM on both push and pull to further enhance supply chain security.

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.