Introducing gittuf: a security layer for git repositories

Justin Cappos spoke about his work on a security layer for Git repositories “gittuf,” housed under the Supply Chain Integrity Working Group. “gittuf is developed and maintained by a variety of folks from industry and academia, all of which have helped develop other open source projects in the software supply chain security,” said Cappos.