Skip to content
@chainloop-dev

chainloop.dev

Chainloop is an Open Source Metadata Vault for your Software Supply Chain metadata, SBOMs, VEX, SARIF files, QA reports, and more.

With Chainloop, operators can decide what pieces of evidence they want to receive, where to put them, and what to do with them. On the other hand, developers just need to follow a guided attestation process. Defining a clear separation of concerns that scales with your organization's compliance and security needs.

Go to https://docs.chainloop.dev/ to learn more and get started.

Pinned

  1. chainloop chainloop Public

    Chainloop is an Open Source evidence store for your Software Supply Chain attestations, SBOMs, VEX, SARIF, CSAF files, QA reports, and more.

    Go 314 23

Repositories

Showing 6 of 6 repositories

Most used topics

Loading…