Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Signed rebuild attestations #12

Closed
kpcyrd opened this issue Apr 28, 2020 · 2 comments
Closed

Signed rebuild attestations #12

kpcyrd opened this issue Apr 28, 2020 · 2 comments
Labels
enhancement New feature or request

Comments

@kpcyrd
Copy link
Owner

kpcyrd commented Apr 28, 2020

Right now rebuilders are very informal. They report their status, but a GOOD attestation is not used for anything serious yet. Right now it's sufficient to use the basic security that https provides.

I'm opening this as a tracking issue to collect ideas and thoughts how this should look like in the future.

@tarcieri
Copy link

You might take a look at in-toto as a metadata format for this information:

https://github.com/in-toto/docs/blob/v0.9/in-toto-spec.md

@kpcyrd kpcyrd added the enhancement New feature or request label Dec 27, 2020
@kpcyrd
Copy link
Owner Author

kpcyrd commented Dec 17, 2021

This was implemented on 0.14.0 a while ago! 🎉

@kpcyrd kpcyrd closed this as completed Dec 17, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

2 participants