|
gitsign
☆
« Back to VersTracker
|
||||||||||||||||||||
|
Description: Keyless Git signing using Sigstore |
||||||||||||||||||||
| Type: Formula | Latest Version: 0.13.0@0 | Tracked Since: Dec 25, 2025 | ||||||||||||||||||||
| Links: Homepage | GitHub | @sigstore | formulae.brew.sh | ||||||||||||||||||||
| Stars: 1,044 | Forks: 73 | Language: Go | Category: Security | ||||||||||||||||||||
| Tags: git security signing sigstore devops supply-chain | ||||||||||||||||||||
| Install: brew install gitsign | ||||||||||||||||||||
|
About: Gitsign is a Git signing tool that leverages Sigstore's keyless framework to sign Git commits and tags using OpenID Connect (OIDC) identity tokens. Instead of managing traditional GPG keys, it integrates with Sigstore's Fulcio and Rekor services to create ephemeral certificates tied to your identity. This approach significantly simplifies the signing process while providing a verifiable, transparent software supply chain. |
||||||||||||||||||||
Key Features:
|
||||||||||||||||||||
Use Cases:
|
||||||||||||||||||||
Alternatives:
|
||||||||||||||||||||
| Version History | ||||||||||||||||||||
|