Gittuf is an attempt to provide a security layer for Git that can handle key management, enforce security policies for repositories, and guard against attacks at the version-control layer. It aims to verify policy adherence and provide secure source code for the software supply chain.
Sort: