[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#1019518: ITP: gitsign -- keyless git signing using sigstore



On 2022-09-11 00:04:54, Leo Antunes wrote:
> Package: wnpp
> Severity: wishlist
> Owner: Leo Antunes <costela@debian.org>
> X-Debbugs-Cc: debian-devel@lists.debian.org
>
> * Package name    : gitsign
>   Version         : 0.3.0
>   Upstream Author : The Sigstore Authors <info@sigstore.dev>
> * URL             : https://sigstore.dev
> * License         : Apache 2.0
>   Programming Lang: go
>   Description     : keyless git signing using sigstore
>
> Tool for keyless signing of git commits based on sigstore.

It looks like a better URL for this would be:

https://github.com/sigstore/gitsign

... which is fairly new (May 2022). I knew about sigstore but couldn't
quite figure out how to integrate it in our workflow, so this is
actually quite useful to know...

Thanks for working on that package!

-- 
That's the kind of society I want to build. I want a guarantee - with
physics and mathematics, not with laws - that we can give ourselves
real privacy of personal communications.
                         - John Gilmore


Reply to: