Skip to content

Security: opopops/wolfi

Security

SECURITY.md

Security Policy

This document outlines the security policies, including how to report vulnerabilities, verify artifact integrity, and understand the security measures in place.


🔑 Provenance and Supply Chain Security

To ensure the integrity of our software, we provide a verifiable provenance for our Docker images. You can find all provenance attestations here.

🏗️ Build Provenance

Our wolfi-based container images are built using GitHub Actions and follow best practices for supply chain security with a declarative approach leveraging apko.

There aren’t any published security advisories