Skip to content

purl-next: Package a service and library for PURL binary validation #1770

@pombredanne

Description

@pombredanne

We need to package a service and library to validate the integrity of open source package and promote its integration in package repositories, for decentralized, local validation of the supply chain integrity for PURLs used in an application.

  • Packaging an open service to validate the integrity of open source package
  • Packaging an open library to validate the integrity of open source package
  • Promote its integration in ecosystem package repositories,
  • Create a CI/CD integration

See also:

Sub-issues

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

Status

Needs prep

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions