Notes / Ci Cd / 04 Artifact Platform / 3 Software Supply Chain

3 — Software Supply Chain

Covers build provenance, SBOMs, artifact signing, and verification as the software-supply-chain controls layered on top of artifact storage — see kubernetes/08-supply-chain-security for the Sigstore/cosign/SLSA implementation detail.

· §202607241426-19 ·
Chapter Navigation
On This Page

3 — Software Supply Chain

Purpose

[stub: software-supply-chain]

Metadata

AuthorAmit Singh
Scopeci-cd

Local graph

Full graph →