Supply Chain Security

Software supply chain security expertise covering SBOM generation and analysis, dependency vulnerability scanning, Sigstore signing and verification, SLSA framework compliance, artifact provenance, build integrity, package manager security, container image signing, and CI/CD pipeline hardening for establishing trust in the software delivery process. Use when the user asks about supply chain security, supply chain security best practices, or needs guidance on supply chain security implementation. Do NOT use when the user needs a different specialized skill or is asking about an unrelated technology domain.

FerroxLabs ffa9287 2 files · 11.9 KB Updated 37 repo stars

File contents

ferroxlabs/murage/tree/main/skills-library/supply-chain-security commit ffa9287b00

Frequently asked questions

npx skillmds@latest add ferroxlabs/supply-chain-security