Watch / Tutorial 14:44
Tutorial

Supply Chain Security with a CLI: valint

§ Overview

About this video

What You'll Learn

  1. Generate SLSA and CycloneDX SBOMs for container images, Git repositories, and Go projects.
  2. Sign collected evidence with Sigstore and store it in OCI artifacts.
  3. Enforce cosign policies locally, in CI, or through a Kubernetes admission controller.

Tutorial on Valint, Scribe Security's supply chain CLI. Generate SLSA and CycloneDX SBOMs for containers, Git repos, and Go projects, sign evidence with Sigstore, push to OCI registries, and enforce cosign policies locally, in CI, or as a Kubernetes admission controller.

§ Technologies featured
Weekly Cloud Native insights

Stay ahead in cloud native

Tutorials, deep dives, and curated events. No fluff.

More about sigstore

View technology