Is #TheUpdateFramework (TUF) appropriate for #Guix?
Are #Git signed commits sufficient to authenticate a repo?
What about Git{Hub,Lab} “verified” badges?
#git #guix #TheUpdateFramework
https://ftp-master.debian.org/new/tuf_0.17.0+dfsg-1.html# #Debian : I've packaged #TUF : #TheUpdateFramework : an #OpenSource reference implementation in #Python to build #SoftwareUpdate prevent or mitigate #SupplyChainAttacks to or #CyberSecurity compromise
#debian #tuf #TheUpdateFramework #opensource #python #softwareupdate #supplychainattacks #cybersecurity
https://salsa.debian.org/# #Debian 's #git : #SalsaDebianOrg is currently down , BTW I am looking for uploader for #TUF : #TheUpdateFramework : https://mentors.debian.net/packages/uploader/rzr@users.sf.net/
#debian #git #SalsaDebianOrg #tuf #TheUpdateFramework