Secure software supply chain with signing and verification

Joined November 2022
11 Photos and videos
We just archived the legacy notary repo github.com/notaryproject/not… after the vote passed in the community. If you are still using the legacy notary for signing, it's time to transition to notation: notaryproject.dev/
1
63
👏🎉We’re excited to announce that Ratify has officially joined the Notary Project as a subproject after the vote passed in the community! This marks a significant step forward in our shared mission to deliver secure and trusted software supply chain notaryproject.dev/blog/2025/…
6
12
962
If you want to get a quick overview of #NotaryProject and how you can use it to sign container images and other arbitrary files, the lightning talk from @yizha1bell #KubeCon is a great start. Find us on Notary Project kiosk and maintainers track at KubeCon EU this week!
1
84
Notary Project retweeted
Quick demo on using @NotaryProject's new blob subcommand to sign, well anything that's not a container image. 😂
5
11
1,036
We’re thrilled to announce the release of Notation v2.0.0-alpha.1! This version expands support beyond container images and OCI artifacts, enabling signing and verification of any arbitrary blob files. Check out the release notes and give it a try: github.com/notaryproject/not…
2
44
Join Yi Zha to learn how to secure cloud-native workloads: hands-on with Notary Project, ORAS, and Ratify this Friday 9:00 AM Pacific Time. Getting started with an end-to-end signing and verification workflow youtube.com/live/ziWZrMnwQqY
2
6
485
It's excited to see @bitnami Tanzu Application Catalog leverages Notation to sign and verify container images and OCI artifacts. Check out the blog from Beltran Rueda to learn how Bitnami team improves software supply chain security by using Notation: notaryproject.dev/blog/2023/…
1
14
21
4,087
It's excited to see @bitnami Tanzu Application Catalog leverages Notation to sign and verify container images and OCI artifacts. Check out the blog to learn what Tanzu Application Catalog achieves in software supply chain security by using Notation.
21 Dec 2023
Tanzu Application Catalog now leverages @NotaryProject's standards-based tooling for signing and verifying artifacts to deliver improved software supply chain security capabilities. Read more in this blog by @ppbaena tanzu.vmware.com/content/vmw…
1
3
390
Come and meet @toddysm and Milind Gokarn at Notary Project/ORAS Kiosk at #KubeCon2023 !
1
12
409
Notary Project retweeted
Improving the security of software supply chains with @NotaryProject @toddysm and Milind
1
8
21
1,659
Notary Project retweeted
Replying to @NotaryProject
Signing with AWS Signer and Notation
1
1
2
250
Notary Project retweeted
Replying to @NotaryProject
Using signing and verification plugins
1
2
219
Check out two latest episodes from @jrrickardand @toddysmto to learn how to use @NotaryProject to sign container images and ensure image integrity in production: techcommunity.microsoft.com/…
3
5
603
Hey, if you're seeking a way to secure your image integrity, join @jrrickard and @toddysm to learn how to use @NotaryProject Notation’s plugins to sign container images for production use: youtube.com/watch?v=k5tsE19D…
4
7
606
Glad to collaborate with @project_harbor to integrate Notation into Harbor UI. By leveraging the OCI Referrers API, the Notary Project signature is naturally supported by the Harbor registry now.
🎉We Just released Harbor 2.9 which has great new features such as Security Hub - able to view all your CVEs at a glance or to be able to set up a notification banner, integration with #notation from @NotaryProject, and many more. Check the full list here: goharbor.io/blog/harbor-2.9/
4
10
4,961
Join @toddysm, Milind Gokarn, and @wiggitywhitney at Enlightning to learn how to sign & verify software artifacts with Notation
On tomorrow's ⚡️ Enlightning, Milind Gokarn & @toddysm teach @NotaryProject, a @CloudNativeFdn project that can sign & verify software artifacts stored in OCI-compliant registries. Click 'notify me' on the YouTube thumbnail: youtu.be/FwpHZfNE9LQ Thurs Aug 31! @VMwareTanzu
4
8
1,508
The Notary Project maintainers are proud to announce a major release, including Notary Project specifications v1.0.0, notation CLI and libraries v1.0.0 which are ready for production use! See this blog post to learn more about this big milestone. notaryproject.dev/blog/2023/…
7
16
6,144
Notary Project retweeted
Next week on #CloudNativeWeekly the team checks out @NotaryProject and @OpenPolicyAgent in “10 minute tech”! Join @whaakman, @Pixel_Robots, & @Karl_ITNerd as they catch up on the week in #CloudNative! Thursday @ 12pm UTC 1! youtube.com/live/ZTYMUwZxH4k #Kubernetes #Azure #AWS #GCP
7
8
575