Trail of Bits, with funding from OpenSSF, is improving Sigstoreās rekor-monitor to help maintainers detect malicious package releases, monitor signing identities, and strengthen software supply chain security using transparency logs.
Weāre pleased to announce the creation of a new BigQuery public dataset, rekor. The rekor dataset is an easily-queryable mirror of the public good instance of Sigstoreās transparency log, Rekor.