We're not a traditional security vendor. Our tools are built on a secure by default infrastructure that enables developers everywhere to ship secure software.
Design & automate a secure-by-default software supply chain
Mitigate the impact of a software supply chain attack
Build trust and confidence in critical dependencies
Manage and ensure continuous compliance
Augment your in house DevSecOps team
Sigstore is a new standard for signing, verifying and protecting software. We're part of the team that started Sigstore and are now building enterprise products that add additional functionality.
Great question! There are a couple of good options to get started, but we'd first recommend you reach out to us here and we can find a time to connect and walk you through where we might be able to help.
The Chainguard team supports a number of open source projects, including Sigstore, SLSA, Tekton, OpenSSF, distroless and Knative. Check out our about page for more information or reach out to us here if you have questions about how me might be able to help.