Certificates & Proofs / Supply Chain Signing — Quantum-Safe Container Provenance
What you will do: Demonstrate post-quantum software signing with the forked Sigstore cosign (v3.0.6 + ML-DSA-65) — sign a manifest with...
Worked example: Connect the separately operated Docker sandbox, open the Supply Chain Signing — Quantum-Safe Container Provenance scenario, and compare its ML-DSA-65, Sigstore / cosign, SLSA L3 workflow with the stated migration goal.
Runtime and privacy: This scenario requires a separately operated, access-gated Docker runtime. The public page explains the exercise but does not send inputs to or start a container unless you configure and connect that runtime.
pqctoday-sandbox is not reachable
Start the Docker stack: cd ~/antigravity/pqctoday-sandbox && docker compose up -d. Then reload this page.
Related content
Next in Certificates & Proofs