Loading…
In-person
1-4 April 2025
Learn More and Register to Attend

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for KubeCon + CloudNativeCon Europe 2025 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

Please note: This schedule is automatically displayed in British Summer Time (BST) (UTC +1). To see the schedule in your preferred timezone, please select from the drop-down menu to the right, above "Filter by Date." The schedule is subject to change and session seating is available on a first-come, first-served basis. 
Wednesday April 2, 2025 17:45 - 18:15 BST
in-toto is a framework that allows users to protect their software supply chain. The framework achieves this by providing two key capabilities: cryptographically attesting steps along the supply chain and enforcing policies that govern the relationships between the attestations.

This talk aims to introduce new users to in-toto and provide a brief overview of the progress made by all the subprojects and working groups.
Speakers
avatar for Justin Cappos

Justin Cappos

Professor, New York University
I am a professor at NYU who has been working on software supply chain security for more than 20 years. I am a maintainer / creator of the TUF, Uptane, and in-toto projects, which are all under the LF.
avatar for Alan Chung Ma

Alan Chung Ma

Software Engineer, Keytos
Alan is passionate about open software and has contributed to software supply chain security projects such as in-toto and sigstore. He is a software engineer at Keytos and graduated from Purdue University with a degree in Computer Engineering.
Wednesday April 2, 2025 17:45 - 18:15 BST
Level 3 | ICC Capital Suite 7-9

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Share Modal

Share this link via

Or copy link