sottlmarek / DevSecOps

Ultimate DevSecOps library
MIT License
5.76k stars 1.01k forks source link

Adding Cosign to the list of Container Signing #3

Closed sttor closed 2 years ago

sttor commented 2 years ago

Cosign is a beautiful project under sigstore. It is being used for signing the images and is compatible with almost all the OCI Registries.

sottlmarek commented 2 years ago

LGTM. Very good tool, absolutely should have place here.