{"categories":[{"label":"Utilities","url":"https://skillfed.io/packages/category/utilities/6"},{"label":"Testing","url":"https://skillfed.io/packages/category/software-development-testing/3"},{"label":"Quality Assurance","url":"https://skillfed.io/packages/category/software-development-quality-assurance/2"},{"label":"Systems Administration","url":"https://skillfed.io/packages/category/system-systems-administration"}],"enrichment":{"capability":"Generates and validates checksums and GPG signatures for Ansible content to verify authenticity and integrity.","skillfed_tags":["ansible-automation","cryptographic-signing","content-verification"],"use_cases":["Verify that downloaded Ansible roles or collections have not been modified or compromised before deployment.","Generate signed manifests for Ansible content you publish to ensure end users can authenticate your releases.","Integrate content verification into CI/CD pipelines to block deployment of unsigned or tampered Ansible artifacts.","Validate checksum integrity of Ansible playbooks distributed across teams or organizations.","Establish a chain of trust for Ansible automation by cryptographically signing and verifying all content."],"what_it_does":"ansible-sign is a library and command-line tool for cryptographically verifying Ansible content. It generates SHA256 checksums and GPG detached signatures to ensure that Ansible playbooks, roles, and other artifacts have not been tampered with and come from a trusted source. The package provides both a Python API for programmatic use and stable CLI commands for manual verification workflows.\n\nThe tool is intended for developers, system administrators, and information technology professionals who need to validate the integrity and authenticity of Ansible content in their environments. It depends on distlib for distribution utilities and python-gnupg to handle GPG operations. The CLI interface is considered stable within major versions, though the underlying library API may evolve.","worth_installing":"Yes, if you need to sign or verify Ansible content. The package is actively maintained, has no known vulnerabilities, installs cleanly, and is licensed permissively under MIT. The CLI is stable; be aware the library API is not officially supported and may change. Suitable for production use in verification workflows."},"id":"ansible-sign","links":{"html":"https://skillfed.io/packages/ansible-sign","md":"https://skillfed.io/packages/ansible-sign.md","pypi":"https://pypi.org/project/ansible-sign/"},"maintenance":{"status":"active"},"meta":{"latest_release":"2026-06-30","license_spdx":"MIT","license_treatment":"permissive","name":"ansible-sign","python_support":"supports_current","summary":"Ansible content validation library and CLI"},"popularity":{"monthly_downloads":412059,"position":6852,"tier":"top_15000"},"security":{"n_vulnerabilities":0},"version":"0.1.6"}
