Logo
  • Home
  • Blog
  • @chainguard_dev
  • Search
Menu
Author 1 Post

Marina Moore

Page 1 of 1

Do the Dependency Trees of Widely Used Packages Grow?

By John Speed Meyers, Zachary Newman, Jacobo McGuire, Marina Moore in dependency on 13 Jul 2022

Writing software has been compared to gardening, suggesting the tendency of a codebase to evolve and morph and the necessity of a software developer to heed the natural tendencies of a codebase’s inhabitants. We wondered about the extent to which the analogy applied to open source software packages and…

Page 1 of 1

Topics

sigstore: 22 software supply chain: 20 cosign: 11 tutorial: 9 sbom: 7 keyless: 6 slsa: 6 chainguard: 5 base images: 5 tekton: 4 nist: 4 apko: 4 github actions: 3 aws: 3 oci: 3 secure by default: 3 eks: 2 SSDF: 2 alpine: 2 distroless: 2 openssf: 2 kubernetes: 1 k8s: 1 aws codepipeline: 1 ecs: 1 azure: 1 Getting Started: 1 linux: 1 knative: 1 whitepaper: 1 open standards: 1 attestation: 1 crypto: 1 chainguard-enforce: 1 git: 1 gitsign: 1 image: 1 dependency: 1 log4j: 1 melange: 1
Chainguard, Inc. © 2022
  • Privacy
  • Contact
Published with Ghost • Theme Attila • System theme