diff --git a/securesystemslib/signer/_sigstore_signer.py b/securesystemslib/signer/_sigstore_signer.py index a1e32617..f65d1bc0 100644 --- a/securesystemslib/signer/_sigstore_signer.py +++ b/securesystemslib/signer/_sigstore_signer.py @@ -259,8 +259,7 @@ def sign(self, payload: bytes) -> Signature: with context.signer(self._token) as sigstore_signer: result = sigstore_signer.sign(io.BytesIO(payload)) - # TODO: Ask upstream if they can make this public - bundle = result._to_bundle() # pylint: disable=protected-access + bundle = result.to_bundle() return Signature( self.public_key.keyid,