Notary Project Signing Specification
The Notary Project specification defines the signature envelope format, trust store and trust policy for container image signing and verification. It supports multiple signature formats and integrates with OCI distribution registries for storing signatures alongside container images. The specification enables end-to-end supply chain security from build to deployment.
Documentation
SDKs
Schemas & Data
JSONSchema
https://raw.githubusercontent.com/api-evangelist/notary/refs/heads/main/json-schema/notary-trust-policy-schema.json
JSONSchema
https://raw.githubusercontent.com/api-evangelist/notary/refs/heads/main/json-schema/notary-signature-envelope-schema.json