-
Notifications
You must be signed in to change notification settings - Fork 516
Issues: sigstore/cosign
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
AWS KMS Keys appear to only be able to use RSASSA_PKCS1_V1_5_SHA_256 signing algorithm
enhancement
New feature or request
#3807
opened Jul 31, 2024 by
trevorlinton
sign: Include rekor entry ID in output
enhancement
New feature or request
#3805
opened Jul 30, 2024 by
stephen-fox
Bundle inspection and generation utilities
enhancement
New feature or request
pre-theseus
#3794
opened Jul 23, 2024 by
haydentherapper
Cuelang version error with go installer
bug
Something isn't working
#3786
opened Jul 19, 2024 by
arthurus-rex
move utility key handling functions in pkg/cosign to an internal package
enhancement
New feature or request
#3779
opened Jul 11, 2024 by
dmitris
Missing visibility body parameter when creating organization secrets
bug
Something isn't working
#3778
opened Jul 11, 2024 by
mark-trellix
main.go:74: error during command execution: signing **image:tag**: provenance predicate: required field builder missing
bug
Something isn't working
#3757
opened Jul 2, 2024 by
blueacidification
Cosign can't verify by local key exported from HashiVault
bug
Something isn't working
#3751
opened Jun 26, 2024 by
GarrykZ
Why not using an empty configuration for the signature on OCI 1.1?
question
Further information is requested
#3750
opened Jun 25, 2024 by
Silvanoc
Support AES management key on YubiKeys with 5.7.x firmware
enhancement
New feature or request
#3742
opened Jun 20, 2024 by
joostd
Cosign Verify fails with azure akv intermittent
bug
Something isn't working
#3719
opened Jun 4, 2024 by
suryabaiarava
Cosign Verify fails with azure akv intermittent
enhancement
New feature or request
#3709
opened May 24, 2024 by
suryabaiarava
Add support for providing a trust root file for private deployments
enhancement
New feature or request
pre-theseus
#3700
opened May 16, 2024 by
haydentherapper
Cosign should check Media Type of the layer before download of the signature
enhancement
New feature or request
#3669
opened Apr 17, 2024 by
Mukuls77
Why calling v2 referrers api and including all signature layer in new signature manifest
question
Further information is requested
#3659
opened Apr 9, 2024 by
MinerYang
Bypass YubiKey Authentication for Self-Generated Key Pairs
question
Further information is requested
#3658
opened Apr 8, 2024 by
abakerwrs
Support working with SLSA statements (without wrapping)
enhancement
New feature or request
#3641
opened Apr 3, 2024 by
fmoessbauer
Enable annotations to be set on attestations and signatures when OCI artifacts are uploaded
enhancement
New feature or request
#3640
opened Apr 2, 2024 by
arewm
Cosign doesn't accept Digicert's TSA certificate when verifying a signature
enhancement
New feature or request
#3632
opened Apr 1, 2024 by
alt-enio
Keyless Sigining Verification Fails on Github Self Hosted Runner
question
Further information is requested
#3613
opened Mar 21, 2024 by
learningcicd
cosign sign with hashivault as KMS without transit
enhancement
New feature or request
#3611
opened Mar 20, 2024 by
VenutNSA
cosign verify-attestation
hangs indefinitely in GitHub Actions
bug
#3602
opened Mar 18, 2024 by
AliSajid
Attestations require uploading entire payload to rekor
enhancement
New feature or request
#3599
opened Mar 14, 2024 by
jonjohnsonjr
Request: Update the CODEOWNERS.md with the current list of maintainers
enhancement
New feature or request
#3580
opened Mar 7, 2024 by
TheFoxAtWork
Switch to Fulcio v2 API
enhancement
New feature or request
#3569
opened Feb 29, 2024 by
haydentherapper
Previous Next
ProTip!
Type g p on any issue or pull request to go back to the pull request listing page.