hyperledger / toc

Hyperledger TOC documents
https://toc.hyperledger.org/
Creative Commons Attribution 4.0 International
35 stars 44 forks source link

Task Force Proposal: Security Artifact Signing #49

Open tkuhrt opened 1 year ago

tkuhrt commented 1 year ago

Introduction/background material

At the January 19, 2023 TOC meeting, @lehors presented an overview of OpenSSF. One of the low hanging fruit that Hyperledger might implement to improve security is the use of SigStore for artifact signing.

Task to be completed

This task force will be focused on developing best practices and tooling for using SigStore for artifact signing.

List of deliverables or work products

Time to complete (no more than 6 months)

TBD

Leader

Arun S M

Initial participant list

arsulegai commented 1 year ago

Update from TOC meeting on Aug 17th, 2023: