Supply Chain Security: Sigstore, SLSA, and What's Actually Practical
A pragmatic take on supply chain security: cosign keyless signing, signature verification at admission, SBOMs that get used, and SLSA without ceremony.
Read the post1 post about supply-chain in the conndeck blog — field notes on local-first Kubernetes operations, GitOps, and production debugging.
A pragmatic take on supply chain security: cosign keyless signing, signature verification at admission, SBOMs that get used, and SLSA without ceremony.
Read the post