An implementation of a pip plugin that verifies PEP-740 attestations before installing a package, and aborts the installation if verification fails (as discussed on the pip issue tracker).
-
Notifications
You must be signed in to change notification settings - Fork 0
An implementation of a pip plugin that verifies PEP-740 attestations before installing a package, and aborts the installation if verification fails.
License
trailofbits/pip-plugin-pep740
Folders and files
Name | Name | Last commit message | Last commit date | |
---|---|---|---|---|
Repository files navigation
About
An implementation of a pip plugin that verifies PEP-740 attestations before installing a package, and aborts the installation if verification fails.
Resources
License
Security policy
Stars
Watchers
Forks
Releases
No releases published
Packages 0
No packages published