# slsa assessement

Published articles for slsa assessement.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Elastic partners with Chainguard on Software Supply Chain security and SLSA assessment

DevFeed: [Elastic partners with Chainguard on Software Supply Chain security and SLSA assessment](<https://devfeed.tech/articles/elastic-partners-with-chainguard-on-software-supply-chain-security-and-slsa-assessment-13026.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/elastic-partners-with-chainguard-on-software-supply-chain-security-and-slsa-assessment>)

Published: 2023-07-26T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [chainguard](<https://devfeed.tech/topics/chainguard.md>), [Security](<https://devfeed.tech/topics/security.md>), [open-source-security](<https://devfeed.tech/topics/open-source-security.md>), [sigstore](<https://devfeed.tech/topics/sigstore.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>)

Tags: [chainguard](<https://devfeed.tech/tags/chainguard.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [open-source-software](<https://devfeed.tech/tags/open-source-software.md>), [security](<https://devfeed.tech/tags/security.md>), [sigstore](<https://devfeed.tech/tags/sigstore.md>), [slsa](<https://devfeed.tech/tags/slsa.md>), [slsa-assessement](<https://devfeed.tech/tags/slsa-assessement.md>), [slsa-levels](<https://devfeed.tech/tags/slsa-levels.md>), [software-artifact-signing](<https://devfeed.tech/tags/software-artifact-signing.md>), [software-supply-chain](<https://devfeed.tech/tags/software-supply-chain.md>), [software-supply-chain-security](<https://devfeed.tech/tags/software-supply-chain-security.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>), [trust](<https://devfeed.tech/tags/trust.md>)

### AI overview

Elastic partnered with Chainguard to assess its software supply chain using the SLSA framework. The article describes supply-chain risks across source, build, dependencies, and packages, and highlights software artifact signing with Sigstore as a security measure.

### Source excerpt

Elastic and Chainguard unite for enhanced software supply chain security and SLSA assessment.