
Jack Cable of CISA and Zach Steindler of GitHub Dig Into Package Repository Security
What's in the SOSS? An OpenSSF Podcast
00:00
Enhancing Software Security Through Trusted Publishing
This chapter explores the innovative concept of trusted publishing in package management, focusing on improved security through workload identity for authorization. It highlights successful implementations across various repositories and emphasizes the need for collaboration and responsibility in maintaining the open-source ecosystem.
Transcript
Play full episode