k2gl/tuf dependents (1) Order by: name | downloads Show: all | require | require-dev
-
PHP
k2gl/sigstore-verify
Offline, fail-closed PHP verifier for Sigstore bundles: Fulcio certificate chain, DSSE or message signature, Rekor v1/v2 transparency-log proof, RFC 3161 timestamp, certificate transparency and identity policy. Passes the official sigstore-conformance suite.