{"repo":"theupdateframework/go-tuf","free":true,"listed":false,"github":"https://github.com/theupdateframework/go-tuf","clone":"git clone https://github.com/theupdateframework/go-tuf.git","description":"Go implementation of The Update Framework (TUF)","language":"Go","stars":712,"topics":["go","golang","security","supply-chain","tuf","hacktoberfest","chain","software","supply"],"license":"Apache-2.0","category":"security-tools","readme_excerpt":"go-tuf/v2 - Framework for Securing Software Update Systems ---------------------------- The Update Framework (TUF) is a framework for secure content delivery and updates. It protects against various types of supply chain attacks and provides resilience to compromise. About The Update Framework ---------------------------- The Update Framework (TUF) design helps developers maintain the security of a software update system, even against attackers that compromise the repository or signing keys. TUF provides a flexible specification defining functionality that developers can use in any software update system or re-implement to fit their needs. TUF is hosted by the Linux Foundation as part of the Cloud Native Computing Foundation (CNCF) and its design is used in production by various tech companies and open-source organizations. Please see TUF's website for more information about TUF! Overview ---------------------------- The go-tuf v2 project provides a lightweight library with the following functionality: creation, reading, and writing of TUF metadata an easy object-oriented approach for interacting with TUF metadata consistent snapshots signing and verifying TUF metadata ED25519, RSA, and ECDSA key types referenced by the latest TUF specification top-level role delegation target delegation via standard and hash bin delegations support of succinct hash bin delegations which significantly reduce the size of the TUF metadata support for unrecognized fields within the metadata (i.e","default_branch":null,"files":null,"tree":[],"storefront":"/r/theupdateframework","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/theupdateframework/go-tuf/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}