Zero Trust

Libraries and tools to implement Zero Trust architectures.

Cosign4.6K

Container Signing, Verification and Storage in an OCI registry.

OpenZiti3K

A full, open source zero trust overlay network. Including numerous SDKs for numerous languages such as golang allowing you to embed zero trust principles directly into your applications. The OpenZiti Test Kitchen has numerous examples to draw inspiration from including a zero trust ssh client - zssh

Spire1.8K

SPIRE (the SPIFFE Runtime Environment) is a toolchain of APIs for establishing trust between software systems across a wide variety of hosting platforms.

in-toto133

Go implementation of the in-toto (provides a framework to protect the integrity of the software supply chain) python reference implementation.

Spiffe-Vault85

Utilizes Spiffe JWT authentication with Hashicorp Vault for secretless authentication.