# Notary Project Signing Specification

**Canonical:** https://apis.io/apis/notary/notary-spec/  
**Provider:** Notary Project — https://apis.io/providers/notary/  
**Documentation:** https://notaryproject.dev/docs/

Notary Project Signing Specification is one of 4 APIs that [Notary Project](https://apis.io/providers/notary/) publishes on the [APIs.io](https://apis.io/) network. This API exposes 2 JSON Schema definitions. Tagged areas include Signing, Specification, and Verification. The published artifact set on APIs.io includes API documentation, an API reference, a GitHub repository, and 2 JSON Schemas.

The Notary Project specification defines the signature envelope format, trust store and trust policy for container image signing and verification. It supports multiple signature formats and integrates with OCI distribution registries for storing signatures alongside container images. The specification enables end-to-end supply chain security from build to deployment.

## Machine-readable artifacts (6)

- **Documentation** — https://notaryproject.dev/docs/
- **Reference** — https://github.com/notaryproject/specifications/blob/main/specs/trust-store-trust-policy.md
- **GitHubRepository** — https://github.com/notaryproject/specifications
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/notary/refs/heads/main/json-schema/notary-trust-policy-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/notary/refs/heads/main/json-schema/notary-signature-envelope-schema.json
- **APIsJSON** — https://raw.githubusercontent.com/api-evangelist/notary/refs/heads/main/apis.yml

## Other Notary Project APIs (3)

- [Notation CLI](https://apis.io/apis/notary/notation-cli/)
- [notation-go Library](https://apis.io/apis/notary/notation-go/)
- [Notation Plugin Extensibility](https://apis.io/apis/notary/notation-plugin-framework/)

## Tags

Signing, Specification, Verification

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/apis/notary/notary-spec/). The API's provider profile, Kin Score and agent-readiness rating are at https://apis.io/providers/notary/.
