Software Supply Chain Glossary
A comprehensive collection of terms, concepts, and definitions related to software supply chain management.
A
Artifact Repository
A specialized storage system that manages and organizes software packages, binaries, and dependencies throughout the software development lifecycle.
Artifact
A file or package produced by the build process, such as an executable, container image, library, or other deployable component.
Attestation
A digitally signed statement or evidence about software artifacts that verifies specific properties, origins, or processes related to the software supply chain, enhancing trust and transparency.
Authentication
The process of verifying the identity of a user, system, or entity attempting to access a resource, ensuring that only authorized parties can gain access to protected systems and data.