Back to skills
SkillHub ClubRun DevOpsDevOpsFull StackSecurity

container-signing

Provides a complete GitHub Actions workflow for signing Docker images with Cosign and generating SLSA provenance attestations. Includes Dockerfile labels, permission setup, verification commands, and troubleshooting guidance for implementing container supply chain security.

Packaged view

This page reorganizes the original catalog entry around fit, installability, and workflow context first. The original raw source lives below.

Stars
4
Hot score
81
Updated
March 20, 2026
Overall rating
A8.3
Composite score
5.2
Best-practice grade
A92.4

Install command

npx @skill-hub/cli install cameronsjo-claude-marketplace-container-signing
container-securityci-cdsupply-chaingithub-actions

Repository

cameronsjo/claude-marketplace

Skill path: plugins/cloud/skills/container-signing

Provides a complete GitHub Actions workflow for signing Docker images with Cosign and generating SLSA provenance attestations. Includes Dockerfile labels, permission setup, verification commands, and troubleshooting guidance for implementing container supply chain security.

Open repository

Best for

Primary workflow: Run DevOps.

Technical facets: DevOps, Full Stack, Security, Testing.

Target audience: DevOps teams looking for install-ready agent workflows..

License: Unknown.

Original source

Catalog source: SkillHub Club.

Repository owner: cameronsjo.

This is still a mirrored public skill entry. Review the repository before installing into production workflows.

What it helps with

  • Install container-signing into Claude Code, Codex CLI, Gemini CLI, or OpenCode workflows
  • Review https://github.com/cameronsjo/claude-marketplace before adding container-signing to shared team environments
  • Use container-signing for devops workflows

Works across

Claude CodeCodex CLIGemini CLIOpenCode

Favorites: 0.

Sub-skills: 0.

Aggregator: No.

container-signing | SkillHub