I wrote up some notes on Google Security's new OSS Rebuild project, which increases supply chain security for popular packages on PyPI, NPM and Crates through offering independent build attestations
Google Security OSS Rebuild Enhances PyPI NPM Crates Supply Chain
By
–
Leave a Reply