browseDownload binary →
cosign/Cosign
Sigstore / Linux FoundationContainer image signing, verification, and attestation tool for software supply chain security.
Security & IdentityJSON
01Install
brew install cosign02Global Flags
| Flag | Type | Description |
|---|---|---|
--key | string | Path to signing key |
--output-signature | string | Write signature to file |
--output-certificate | string | Write certificate to file |
03Authentication
Methods
environment-variablesconfig-file
Env vars
COSIGN_KEYCOSIGN_PASSWORDCOSIGN_REPOSITORY04Capabilities
Reference
binary
cosigncheck
cosign versionauth
environment-variables, config-fileformats
textjson flag
--output-json