Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
PackagingCon Happening Tomorrow (pretalx.com)
5 points by droelf on Nov 8, 2021 | hide | past | favorite | 2 comments



It's really exciting that people from so many software ecosystems are acknowledging the shared goal and duty of securing the software supply chain.

One project I was hoping to see there is sigstore[0], but maybe the ideas behind that will get discussed even without a formal timeslot.

[0] https://security.googleblog.com/2021/03/introducing-sigstore...


The main holdup of Sigstore is that it only works for containers today.

The same Trillian project backs Go's global sumdb, would be cool to see the signature and attestations happening as well




Consider applying for YC's Fall 2025 batch! Applications are open till Aug 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: