k2gl/sigstore-verify (0.2.0)
syndicated from packagist.org
on May 30, 2026
Offline, fail-closed PHP verifier for Sigstore bundles: certificate chain to a Fulcio root, DSSE signature, Rekor transparency-log proof and identity policy, returning a verified in-toto Statement.