<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Supply-Chain on Daniel Hugenroth</title>
    <link>https://www.danielhugenroth.com/tags/supply-chain/</link>
    <description>Recent content in Supply-Chain on Daniel Hugenroth</description>
    <image>
      <title>Daniel Hugenroth</title>
      <url>https://www.danielhugenroth.com/photo_square.jpg</url>
      <link>https://www.danielhugenroth.com/photo_square.jpg</link>
    </image>
    <generator>Hugo -- 0.140.1</generator>
    <language>en-gb</language>
    <lastBuildDate>Sat, 17 Jan 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://www.danielhugenroth.com/tags/supply-chain/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Scalable verifiability for supply chain security</title>
      <link>https://www.danielhugenroth.com/posts/2026_01_supply_chain_verifiability/</link>
      <pubDate>Sat, 17 Jan 2026 00:00:00 +0000</pubDate>
      <guid>https://www.danielhugenroth.com/posts/2026_01_supply_chain_verifiability/</guid>
      <description>&lt;p&gt;&lt;em&gt;This article discusses approaches for making supply chains verifiable and secure. The primary audience are developers working on build pipelines and dev ops engineers. It is &lt;a href=&#34;https://lightsquares.dev/blog/scalable-verifiability&#34;&gt;cross-posted from the Light Squares blog&lt;/a&gt;.&lt;/em&gt;&lt;/p&gt;
&lt;h3 id=&#34;modern-supply-chain-security-needs-scalable-verifiability&#34;&gt;Modern supply chain security needs scalable verifiability&lt;/h3&gt;
&lt;p&gt;Modern software supply chains are complex. Dependency trees of modern software often contain thousands of packages across multiple ecosystems. This makes it challenging for any developer team to fully understand exactly what code is going into their build.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
