All tags
Catalogue tag

#attestation

Every repository in the public record carrying this tag — from its GitHub topics or the keywords its package registries publish. Health is measured under the same versioned methodology as the rest of the record.

10 records
Tagged “attestation”Ranked by health index
Go
85Excellenthealth index
chainloop-dev/chainloop
SDLC evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more
Go★ 570Jul 16, 2026
Apache-2.0Jul 16, 2026 · metrics 1.13.0
PyPI
76Goodhealth index
CycloneDX/cyclonedx-python-lib
Functionality and DataModels of OWASP CycloneDX for Python
Python★ 113Jul 17, 2026
Apache-2.0Jul 17, 2026 · metrics 1.13.0
Go
76Goodhealth index
carabiner-dev/ampel
🔴🟡🟢 The Amazing Multipurpose Policy Engine (and L)
Go★ 54Jul 21, 2026
Apache-2.0Jul 21, 2026 · metrics 1.13.0
Go
66Moderatehealth index
carabiner-dev/bnd
Sign and package attestations in sigstore bundles
Go★ 10Jul 23, 2026
Apache-2.0Jul 23, 2026 · metrics 1.13.0
npm · Go · crates.io
65Moderatehealth index
automata-network/automata-dcap-attestation
This repo contains Web3 Implementation of Intel DCAP Quote Verification For Various Ecosystems
Rust · Solidity★ 56↓ 240/moJul 18, 2026
MITJul 18, 2026 · metrics 1.13.0
PyPI
65Moderatehealth index
msaleme/red-team-blue-team-agent-fabric
540 security tests for AI agent systems — MCP, A2A, x402/L402, decision governance, benchmark integrity, skill supply chain. AIUC-1 pre-cert, NIST AI 800-2 aligned, MCP tool-poisoning reproduction. v4.9.1
Python★ 20↓ 667/moJul 20, 2026
Apache-2.0Jul 20, 2026 · metrics 1.13.0
PyPI
65Moderatehealth index
vaaraio/vaara
Open-source evidence layer for AI governance. Gates every AI agent tool call against your policy and writes a hash-chained execution record an auditor verifies offline, without trusting the operator. Root-agnostic, and binds to a TPM 2.0 or SEV-SNP hardware root when present. Your environment, no SaaS, no telemetry. AGPL-3.0.
Python★ 10↓ 7,840/moJul 14, 2026
AGPL-3.0Jul 14, 2026 · metrics 1.13.0
npm · Go
54Moderatehealth index
daily-nerd/vitni
The verifiable trail of agent actions — signed, tamper-evident execution receipts for AI agents (MCP & A2A).
Go · TypeScript · JavaScript★ 1↓ 372/moJul 17, 2026
Apache-2.0Jul 17, 2026 · metrics 1.13.0
Go
44At riskhealth index
Verdifax/verdifax-verify
Cryptographic attestation infrastructure for high-stakes AI decisions. Every governed execution produces a sealed, independently-verifiable manifest hash. USPTO patent + trademark filed.
Go★ 0Jul 22, 2026
MITJul 22, 2026 · metrics 1.13.0
NuGet
26Criticalhealth index
ShiftSoftware/UnifiedAttestation
A robust, unified security layer for Azure Functions (Isolated Worker Model) designed to verify the integrity of mobile client requests across iOS, Android, and Huawei devices. It ensures incoming requests originate from legitimate, untampered versions of your mobile applications running on genuine devices.
C#★ 0Jul 18, 2026
Apache-2.0Jul 18, 2026 · metrics 1.13.0