Repository navigation

#

attestation

Java
893
9 个月前

Hardware-based attestation / intrusion detection app for Android devices. It provides both local verification with another Android device via QR codes and optional scheduled server-based verification with support for alert emails. It uses hardware-backed keys and attestation support as the foundation and chains trust to the app for software checks.

Java
556
8 天前

Witness is a pluggable framework for software supply chain risk management. It automates, normalizes, and verifies software artifact provenance.

Go
492
2 天前

Evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more

Go
482
2 天前

A CNCF Project to Bootstrap & Maintain Trust on the Edge / Cloud and IoT

Python
478
2 天前

Confidential Computing Zoo provides confidential computing solutions based on Intel SGX, TDX, HEXL, etc. technologies.

C++
331
6 天前

in-toto Attestation Framework

Go
292
2 天前

inVtero.net: A high speed (Gbps) Forensics, Memory integrity & assurance. Includes offensive & defensive memory capabilities. Find/Extract processes, hypervisors (including nested) in memory dumps using microarchitechture independent Virtual Machiene Introspection techniques

C#
287
2 年前

Verax is a shared registry for storing attestations of public interest on EVM chains, designed to enhance data discoverability and consumption for dApps across the network.

TypeScript
157
6 天前

Kotlin Multiplatform Crypto/PKI/ASN.1 Library with Attestation and Hardware-Backed Crypto Support on Mobile

Kotlin
139
16 天前

Fixes Play Integrity API (and SafetyNet) verdicts

C++
128
2 年前

attestation.app remote attestation server. Server code for use with the Auditor app: https://github.com/GrapheneOS/Auditor. It provides two services: submission of attestation data samples and a remote attestation implementation with email alerts to go along with the local implementation based on QR code scanning in the app.

Java
126
2 天前

📜 "Coinbase Verifications" is a set of Coinbase-verified onchain attestations that enable access to apps and other onchain benefits.

Solidity
108
1 年前

Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko generative SBOM, cosign attestation, and SLSA build provenance

Go
104
1 年前

Attestation and Secret Delivery Components

Rust
101
2 天前

MultiZone® Security TEE is the quick and safe way to add security and separation to any RISC-V processors. The RISC-V standard ISA doesn't define TrustZone-like primitives to provide hardware separation. To shield critical functionality from untrusted third-party components, MultiZone provides hardware-enforced, software-defined separation of multi

C
86
2 年前

Server-side library to validate the authenticity of Apple App Attest artifacts, written in Kotlin.

Kotlin
71
2 年前

Calculate AMD SEV/SEV-ES/SEV-SNP measurement for confidential computing

Python
67
11 天前