#SPIFFE
Wow! SPIFFE is becoming mainstream, finally. Well done, @anthropic.com. @h.olysh.it is proud.
Use WIF with SPIFFE
Authenticate SPIRE-issued workloads to the Claude API using JWT-SVIDs and the SPIFFE OIDC Discovery Provider.
platform.claude.com
May 6, 2026 at 4:57 PM
Now that I have a shiny new blog, I want to post something I put up on LinkedIn recently. This is a better way to publish vs. that dystopian address book.

It has been 10 years since I kicked off SPIFFE. Thank you to the folks that made it actually happen.

joe.dev/posts/10-yea...
10 Years of SPIFFE
A decade ago I wrote the design doc for SPIFFE. Workload identity is finally having its moment.
joe.dev
May 24, 2026 at 6:59 PM
You can use SSO. You can just WIF. You can sign in with SPIFFE. You can AD your LMS on JWT. You can even WS with API on SPIRE.
May 7, 2026 at 5:15 AM
Goodbye Passwords: Secure Secrets Management with SPIFFE and SPIKE: youtu.be/oTP4fCBqxRw?...
Goodbye Passwords: Secure Secrets Management with SPIFFE and SPIKE
YouTube video by Vadideki Geyik
youtu.be
November 21, 2024 at 8:23 AM
Gotta be honest. It is really cool to see SPIFFE catching on. It’s been a long journey but it is great when people get it.
May 7, 2026 at 1:33 AM
This is the finished lightboard from my 🌩️Thunder conversation with Volkan Özçelik about SPIFFE and SPIRE.

Bottom line: SPIFFE is a secure and automated way to manage identity, no secrets managers needed.

How does it work?
https://gist.github.com/wiggitywhitney/56f88e894079dde91bfd33bbdc4cf0ac
August 28, 2026 at 5:02 AM
Of course the table of not dudes is the only ones masking.

But yay! Learning about SPIFFE
January 30, 2025 at 12:08 AM
SPIFFE/SPIRE on nixos is 100% what I'll be spending my free time on once I get back home
January 31, 2026 at 3:53 PM
Excited and honored! 🎉

Huge thanks to @dfeldman.org for the kind words and nomination for a second term on the SPIFFE Steering Committee

I’m committed to continuing my work in the zero-trust ecosystem and making meaningful contributions. Let’s keep pushing forward! 💪— 🐢⚡️(turtle power)
Add Volkan Ozcelik as nominee by dfeldman · Pull Request #329 · spiffe/spiffe
The SPIFFE Project. Contribute to spiffe/spiffe development by creating an account on GitHub.
github.com
March 3, 2025 at 5:33 PM
@cncf.io wasmCloud is adopting SPIFFE as the standard for introducing workload identity that spans on-prem, edges + clouds. #SPIFFE adoption is growing and is a perfect fit for WebAssembly workload identity. Read @joonas.bergi.us's post for details ✨

wasmcloud.com/blog/2025-03...
Why we're adopting SPIFFE for WebAssembly workload identity | wasmCloud
Explore the SPIFFE specification’s background and learn why wasmCloud is adopting SPIFFE as the standard for introducing workload identity that spans on-prem, edge, and cloud estates.
wasmcloud.com
March 11, 2025 at 3:31 PM
Un petit POC pour comprendre comment mettre en place du SPIFFE et faire communiquer vos applications en mTLS, ça vous botte ?

Si oui, j'ai exactement ce qu'il vous faut 😊

Dans cet article, j'utilise Cert-Manager comme gestionnaire d'identité pour mes workloads !

une-tasse-de.cafe/blog/spiffe/

☕
SPIFFE et mTLS avec cert-manager
Dans cet article, nous allons découvrir SPIFFE, un framework de référence pour la gestion des identités des workloads dans les environnements distribués, et comment l'implémenter dans nos applications...
une-tasse-de.cafe
June 16, 2025 at 10:59 AM
Who wants to give the 50th GitHub ⭐️ to SPIKE?

github.com/spiffe/spike...
Stargazers · spiffe/spike
SPIKE is a lightweight secrets store that uses SPIFFE as its identity control plane. It protects your secrets and helps your ops, SREs, and sysadmins manage sensitive data securely with minimal ove...
github.com
January 4, 2025 at 1:54 AM
Så hvis nogen har et skide godt indspark så kom endelig med det. Det må være mellem 80cm og 100cm bredt.

Lige nu er vores bud at køre den ind med Ikea og så spiffe det op så det får noter af noget viktoriansk eller en "Fredman" fra Qwesarum som er fra en lidt tidligere tidsperiode.

Hilfe bitte
September 26, 2026 at 1:52 PM
I love SPIFFE/SPIRE! Last week I did a cool demo with Marina Moore from @edera.dev where we ran hermetic builds attested and signed with SPIFFE SVIDs, check it out!

bsky.app/profile/eder...
edera.dev Edera @edera.dev · Aug 12
SLSA says builds should run isolated. Can you prove yours did?

Aug 19, 11am ET: Marina Moore & @puerco.mx show how to verify hermetic builds: cryptographic proof, full SBOM coverage, provenance to the exact VM that ran it. Powered by Cocoon in Edera Protect zones.
edera.link/vev-820
Built Clean. Receipts Attached.
Security frameworks such as SLSA require software builds to run in isolated environments to guarantee they are “free of unintended external influence”. Except....
edera.link
August 28, 2026 at 6:36 AM
10 Years of SPIFFE
A decade ago I wrote the design doc for SPIFFE. Workload identity is finally having its moment.
joe.dev
May 25, 2026 at 4:38 PM
Just published SPIKE v0.4.0 » github.com/spiffe/spike...
This is a relatively larger release that has been lingering mostly because I was pressed with other commitments, and I wanted to make sure everything was in a good shape before cutting the release.
Release v0.4.0 · spiffe/spike
Added Added more configuration options to SPIKE Nexus. Updated documentation around security and production hardening. Updated release instructions, added a series of tests to follow and cutting a...
github.com
April 17, 2025 at 6:09 AM
SSC, is the global committee of five people that oversee the strategic direction and growth of all projects falling under the SPIFFE umbrella. It is the only group that presides over the full spectrum of SPIFFE-related work.

github.com/spiffe/spiff...
github.com
March 3, 2025 at 5:33 PM
Hanging at the SPIFFE booth 🎉
November 7, 2023 at 7:46 PM
Happy to announce the release of SPIKE v0.3.0! 🚀 github.com/spiffe/spike...
This version specifically focuses on disaster recovery scenarios. We've also polished the documentation significantly, improving both visuals and content.
Release v0.3.0 · spiffe/spike
This release was focused around bugfixes, stability, documentation, and disaster recovery. Added Documentation: SPIKE Production Hardening Guide is complete and ready for consumption (it was in dr...
github.com
February 25, 2025 at 5:31 PM
🎉 Exciting update: SPIKE is now deployable on Kubernetes!
🛠️ PR: github.com/spiffe/spike...

📗 Documentation:
• Quickstart: spike.ist/getting-star...
• Local Deployment: spike.ist/getting-star...

1/n
June 7, 2025 at 3:44 AM
Shamir's Secret Sharing Scheme with SPIFFE and SPIKE » zerotohero.dev/spire/spike/...

Not fully polished yet; but it's in a fairly-readable state.
I'll update it in the coming days.

code that the article covers is around here: github.com/spiffe/spike...
and here: github.com/spiffe/spike...

Enjoy!
Shamir's Secret Sharing Scheme with SPIFFE and SPIKE
zerotohero.dev
December 28, 2024 at 4:39 PM
When a new workload spins up in Kubernetes, it has nothing to prove who it is yet, no credential, no secret. But it can get a verified identity in seconds - how?

Watch the full 🌩️Thunder episode:
https://youtu.be/cCHXRzoThsM

#SPIFFE #SPIRE #WorkloadIdentity #CloudNative
September 22, 2026 at 5:31 PM
We also have a project roadmap. It should be publicly visible.
Let me know if you cannot reach it:
github.com/orgs/spiffe/...
SPIKE Roadmap • spiffe
Planning board and release management.
github.com
November 22, 2024 at 10:23 PM