sabinghost19/ZTA Policy Attestor

Convert security-policy YAML to JSON and attach it as a Cosign attestation

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
imageImmutable image reference, recommended digest form ghcr.io/org/img@sha256:...yes
policy-pathPath to security-policy.yamlyes
manifest-dirOptional directory containing GitOps manifests used to compute expected_infra_hash from ZeroTrustApplication specno
sync-manifest-imageWhen true and manifest-dir is set, compute expected_infra_hash using inputs.image as ZeroTrustApplication.spec.imagenotrue
attestation-typeCosign attestation typenohttps://devsecops.licenta.ro/attestations/custom-zta-policy/v1

no outputs