Skip to content

Clarify role of attestations in SLSA #1508

Description

@adityasaky

We should expand how we talk about attestations to clarify that each attestation is intended as evidence of meeting certain track requirements. In addition, we should discuss the value of having this evidence recorded in a systematic manner, and the additional security properties they enable (i.e., properties that are distinct from the other track requirements themselves).

Related to #1505 #1459.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

clarificationClarification of the spec, without changing meaningsource-track

Type

No type

Projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions