Public cryptographic keys used by nullplatform for artifact signing and verification.
Container images published to ECR Public (public.ecr.aws/nullplatform/*) are signed with cosign using an AWS KMS key.
cosign verify \
--key https://nullplatform.github.io/security-public-keys/cosign.pub \
public.ecr.aws/nullplatform/<image>:latest| File | Algorithm | Usage |
|---|---|---|
cosign.pub |
ECC NIST P-256 | Container image signature verification |