BigHugger
sk Skill · mukul975

implementing-code-signing-for-artifacts

Implements code signing for build artifacts (binaries, packages, containers) using GPG, Sigstore, and platform-specific signing tools, establishing trust chains and verifying signatures in deployment pipelines. Use when establishing artifact integrity checks against supply-chain tampering, proving authenticity to customers, building zero-trust pipelines that reject unsigned artifacts, or meeting SLSA Level 2+…

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
jsonPythonbashsecure-sdlcsupply-chaincode-signingyamlcicdsigstoredevsecops
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0.0
Licence
Apache-2.0
Host stars
33k
Host language
Python