0038e3d23d460555f7576589e41428ce14a2a03b
sign & verify --vsa (#71)
* Use receivers for manifest functions * Move SaveImage/SaveIndex from image-signing-verifier * Ignore test fixtures in coverage * Add AddImagesToIndex function
attest
library to create, verify, and evaluate policy for attestations on container images
usage
signing and verifying attestations
mirroring TUF repositories to OCI
using go-tuf OCI registry client
Description
Languages
Go
99.1%
Shell
0.7%
Dockerfile
0.2%