in-toto/in-toto-golang
A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.
GoNOASSERTION
Issues
- 9
Request to support signing using AWS KMS keys
#334 opened by semmet95 - 0
Units Tests are Failing
#332 opened by DarikshaAnsari - 0
Revisit type assertions
#230 opened by adityasaky - 7
Oversight in the SLAS v1 field `invocationID`?
#260 opened by chuangw6 - 4
Source code missing for test/data/helloworld binary
#297 opened by jas4711 - 1
CII OpenSSF best-practice badge
#286 opened by viveksahu26 - 1
Improve Scorecard score for in-toto-golang
#283 opened by viveksahu26 - 3
Add OpenSSF Scorecards
#247 opened by adityasaky - 6
Define intoto v1.0 statement type
#265 opened by chuangw6 - 1
- 0
Use in-toto/attestation Go bindings for Statement and SLSA provenance predicate layers
#252 opened by marcelamelara - 2
- 7
- 3
Abstract PKI with SPIRE
#87 opened by colek42 - 9
Allow generating in-toto links using DSSE
#148 opened by adityasaky - 1
Typo in provenance structure
#225 opened by laurentsimon - 9
- 4
- 0
Support v1.0 SLSA provenance format
#197 opened by asraa - 3
- 1
Potential bug in InTotoRun
#124 opened by shibumi - 3
Add version/SHA to provevanceBuilder
#159 opened by laurentsimon - 9
non unique dictionary key error
#191 opened by colek42 - 1
CycloneDX predicate is wrong
#187 opened by lehors - 8
Support older SLSA version and v1.0
#176 opened by chuangw6 - 8
Consider splitting signing-spec/ITE-5 code (`package ssl`) into a standalone repository
#110 opened by adityasaky - 6
go test ./... fails to run
#154 opened by pxp928 - 5
RecordArtifact needs a flag for line normalization
#136 opened by shibumi - 3
Provide examples to each major in-toto cli subcommand
#152 opened by shibumi - 15
in-toto attestation JSON schema verify via CLI
#129 opened by developer-guy - 0
Add Documentation for Auto-Completion
#144 opened by colek42 - 2
TPM 2.0 Support
#134 opened by colek42 - 0
- 5
Use Go Linter for CI
#74 opened by shibumi - 1
File integrity checks.
#133 opened by colek42 - 4
- 3
- 0
InTotoRun inconsistency: handling symlink cycles
#116 opened by joyliu-q - 2
In-toto record functionality
#69 opened by shibumi - 0
Do not share state in test functions
#71 opened by shibumi - 0
- 1
Export function to validate a metablock
#97 opened by adityasaky - 1
validate functions, specifically key validations
#68 opened by shibumi - 0
Go 1.15 Support
#64 opened by shibumi - 4
`go.mod` still not set up correctly
#83 opened by 06kellyjac - 1
ecdsa curve sanity checks
#65 opened by shibumi - 2
ecdsa-sha2-nistp384 support
#67 opened by shibumi - 1
- 10
Windows Compatibility
#75 opened by shibumi - 2