The presentation discusses the importance of supply chain security and how Six Store is working towards simplifying the process of signing and verifying artifacts.
- Six Store has developed a process for signing and verifying artifacts to ensure supply chain security
- The process involves creating a signature, verifying the signature, and storing the artifact in a transparency log
- Six Store is working towards simplifying the process to make it more accessible to developers of all skill levels
- The company is also working on signing more types of artifacts and working with policy bundles to ensure trust in the supply chain
- Six Store aims to be the Let's Encrypt for code signing and is working on building robust and audited infrastructure for this purpose