Gossamer: Supply Chain Security for Open-Source Software

This page summarizes the projects mentioned and recommended in the original post on /r/PHP

Our great sponsors
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • WorkOS - The modern identity platform for B2B SaaS
  • SaaSHub - Software Alternatives and Reviews
  • libgossamer

    Public Key Infrastructure without Certificate Authorities, for WordPress and Packagist

  • The documentation even includes automatically verifying a somewhat specific trust configuration.

  • Composer

    Dependency Manager for PHP

  • A quick Google search yields https://github.com/composer/composer/issues/6941 and https://github.com/composer/packagist/issues/797 from the same people who created the website, so it's probably something that's been discussed at length.

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts