PyRank
  • Insights
  • PyPI
  • GitHub
  • Search
  • Compare
  • Advisories
  • Ecosystem
  • About

Sigstore Python Packages

Python packages with the GitHub topic sigstore. Sorted by relevance, with stars and monthly downloads.
astral-sh
sigstore-models

Pydantic-based, protobuf-free data models for Sigstore

382K 5 4
sigstore
model-signing

Supply chain security for ML

12K 233 59
Metbcy
securescan

Security scanning without the SaaS tax. Multi-scanner orchestration, baseline diffing, SBOM + SARIF, signed everything — runs in your terminal, your CI, or a dashboard you own.

4K 0 0
konjoai
squash-ai

🛡️ Automated EU AI Act compliance for AI/ML teams — Annex IV docs, SBOMs, policy checks, and signed audit records inside your CI/CD pipeline. August 2, 2026 enforcement deadline. ⏰

2K 1 0
arsbr
veritensor

The Anti-Virus for AI Artifacts & RAG Firewall. A static analysis tool scanning Models and Notebooks for RCE, Datasets and RAG docs for Data Poisoning, PII, and Prompt Injections. Secure your AI Supply Chain.

1K 76 5
Halfblood-Prince
trustcheck

Verify PyPI package attestations and improve Python supply-chain security

1K 74 1
ark-forge
arkforge-mcp

Third-party cryptographic proof for AI agent API calls — ArkForge Trust Layer MCP server

933 1 0
mareforma
mareforma

Turning AI-driven findings into trustworthy science

863 6 1
mareforma
mareforma-agent

Turning AI-driven findings into trustworthy science

386 6 1
mareforma
mareforma-cli

Turning AI-driven findings into trustworthy science

383 6 1
mareforma
mareforma-py

Turning AI-driven findings into trustworthy science

380 6 1
ainfera-ai
ainfera-verify

Offline verifier for Ainfera AuditChains. Trust no one, verify the chain yourself.

374 0 0
mareforma
mareform

Turning AI-driven findings into trustworthy science

355 6 1
mareforma
maraforma

Turning AI-driven findings into trustworthy science

354 6 1
mkbhardwas12
pwned-deps

Drop your lockfile in, find out if you're pwned. Compromised-package scanner backed by OSV.dev.

340 64 64
piyushptiwari1
mcpkernel

The Security Kernel for AI Agents — MCP/A2A gateway with policy enforcement, taint tracking, sandboxed execution, deterministic envelopes, and Sigstore audit. OWASP ASI 2026 compliant.

331 0 0
heiwa4126
h4-hello

A practice project for publishing Python projects created with uv to PyPI with PEP740 signatures.

289 0 0
whiteprints
whiteprints

A Copier-based cookiecutter for creating Python projects managed by uv.

252 4 2
    • Data from PyPI, GitHub, ClickHouse, and BigQuery