
web.archive.org/web/20250518192222/https:/blog.trailofbits.com/2024/11/14/attestations-a-new-generation-of-signatures-on-pypi
Preview meta tags from the web.archive.org website.
Linked Hostnames
1Thumbnail

Search Engine Appearance
Attestations: A new generation of signatures on PyPI
For the past year, we’ve worked with the Python Package Index (PyPI) on a new security feature for the Python ecosystem: index-hosted digital attestations, as specified in PEP 740. These attestations improve on traditional PGP signatures (which have been disabled on PyPI) by providing key usability, index verifiability, cryptographic strength, and provenance properties that bring […]
Bing
Attestations: A new generation of signatures on PyPI
For the past year, we’ve worked with the Python Package Index (PyPI) on a new security feature for the Python ecosystem: index-hosted digital attestations, as specified in PEP 740. These attestations improve on traditional PGP signatures (which have been disabled on PyPI) by providing key usability, index verifiability, cryptographic strength, and provenance properties that bring […]
DuckDuckGo

Attestations: A new generation of signatures on PyPI
For the past year, we’ve worked with the Python Package Index (PyPI) on a new security feature for the Python ecosystem: index-hosted digital attestations, as specified in PEP 740. These attestations improve on traditional PGP signatures (which have been disabled on PyPI) by providing key usability, index verifiability, cryptographic strength, and provenance properties that bring […]
General Meta Tags
7- titleAttestations: A new generation of signatures on PyPI - The Trail of Bits Blog
- charsetUTF-8
- viewportwidth=device-width,initial-scale=1
- description
- article:sectionposts
Open Graph Meta Tags
7- og:urlhttps://web.archive.org/web/20250529073916/https://blog.trailofbits.com/2024/11/14/attestations-a-new-generation-of-signatures-on-pypi/
- og:site_nameThe Trail of Bits Blog
- og:titleAttestations: A new generation of signatures on PyPI
- og:descriptionFor the past year, we’ve worked with the Python Package Index (PyPI) on a new security feature for the Python ecosystem: index-hosted digital attestations, as specified in PEP 740. These attestations improve on traditional PGP signatures (which have been disabled on PyPI) by providing key usability, index verifiability, cryptographic strength, and provenance properties that bring […]
og:locale
en_us
Twitter Meta Tags
4- twitter:cardsummary_large_image
- twitter:imagehttps://web.archive.org/web/20250529073916im_/https://blog.trailofbits.com/img/Trail-of-Bits-Open-Graph.png
- twitter:titleAttestations: A new generation of signatures on PyPI
- twitter:descriptionFor the past year, we’ve worked with the Python Package Index (PyPI) on a new security feature for the Python ecosystem: index-hosted digital attestations, as specified in PEP 740. These attestations improve on traditional PGP signatures (which have been disabled on PyPI) by providing key usability, index verifiability, cryptographic strength, and provenance properties that bring […]
Link Tags
13- dns-prefetch//web.archive.org/web/20250529073916/https://fonts.googleapis.com/
- dns-prefetch//web.archive.org/web/20250529073916/https://fonts.gstatic.com/
- preconnecthttps://web.archive.org/web/20250529073916/https://fonts.gstatic.com/
- shortcut icon/web/20250529073916im_/https://blog.trailofbits.com/favicon.png
- stylesheethttps://web-static.archive.org/_static/css/banner-styles.css?v=p7PEIJWi
Links
47- https://web.archive.org/web/20250529073916/https://blog.pypi.org/posts/2023-05-23-removing-pgp
- https://web.archive.org/web/20250529073916/https://blog.pypi.org/posts/2024-11-14-pypi-now-supports-digital-attestations
- https://web.archive.org/web/20250529073916/https://blog.trailofbits.com
- https://web.archive.org/web/20250529073916/https://blog.trailofbits.com/2022/11/08/sigstore-code-signing-verification-software-supply-chain
- https://web.archive.org/web/20250529073916/https://blog.trailofbits.com/2023/05/23/trusted-publishing-a-new-benchmark-for-packaging-security