generated from sigstore/sigstore-project-template
-
Notifications
You must be signed in to change notification settings - Fork 72
Open
Labels
bugSomething isn't workingSomething isn't working
Description
Description
Where possible (depending on OS/platform) gitsign should use hardware backed secure enclaves for private key generation and/or storage. Where this is not possible, gitsign should use a software enclave which uses OS features to protect the memory for the private key from other processes such as https://github.com/awnumar/memguard. This should also be true for the gitsign-credential-cache
binary.
I'm happy to work on this if this sounds reasonable.
wlynch
Metadata
Metadata
Assignees
Labels
bugSomething isn't workingSomething isn't working