Extend Trust Across The Software Supply Chain With Red Hat Trusted Libraries
Red-Hat, Friday, February 13th, 2026
Modern software development runs on open source, and that's not hyperbole. Python alone pulls in dozens-sometimes hundreds-of third-party libraries for even the simplest applications.
While public repositories have fueled innovation at incredible speed, they've also created a new class of risk: Opaque build pipelines, unverifiable provenance, and a growing burden on teams to chase vulnerabilities after the fact.
Today marks the tech preview of Red Hat trusted libraries, a new package index designed to bring enterprise-grade trust, transparency, and security posture to application dependencies, starting with Python.