Notes / Kubernetes / 08 Supply Chain Security / 3 Sigstore And Cosign

3 — Sigstore & Cosign

Keyless signing binds an image to an OIDC identity and a public transparency log instead of a long-lived private key that can leak or expire.

· §202607201139-73 ·
Chapter Navigation
On This Page

3 — Sigstore & Cosign

Purpose

[stub: sigstore-and-cosign]

Metadata

AuthorAmit Singh
Scopekubernetes

Local graph

Full graph →