in-toto

A framework to secure the integrity of software supply chains

Software supply chain protection

Supply chain compromises are becoming a frequent occurrence. In-toto can help you protect your software supply chain.

Read more

Open, Extensible Standard

in-toto is an open metadata standard that you can implement in your software's supply chain toolchain.

Read the Specifications

Extensive Tooling

You can use in-toto today by using your MIT-licensed library and tools.

Tools

Try It Out!

Get started today designing an in-toto layout using our web layout tool.

Get started.