@projectsigstore signatures are now validated and distributed by Maven Central!
OSS Supply Chain Security @google. @projectsigstore @theopenssf Technical Advisory Council - Ex-Red Hat, NetApp, IBM. PhD ECE NCSU.
North Carolina
Joined May 2010
- cloud.google.com/blog/products/… Awesome blog on how we’re using SLSA to make GKE more secure for our customers!
- What a horrific customer experience from @StubHub and @TeamStubHub I’ve been lied to, hung up on twice by customer support agents, and after researching other complaints online I completely regret ever doing business with them. They refuse to let me speak to a supervisor.
- Proud of the work we've done with @EclipseFdn on integrating @projectsigstore into their build pipelines!

