Difference between revisions of "Provenance attestation"
Jump to navigation
Jump to search
Line 3: | Line 3: | ||
Provenance attestations include facts about the build process, including details such as: | Provenance attestations include facts about the build process, including details such as: | ||
− | * Build timestamp | + | * [[Build timestamp]] |
− | * Build parameters and environment | + | * [[Build parameters and environment]] |
− | * Version control metadata | + | * [[Version control metadata]] |
− | * Source code details | + | * [[Source code details]] |
− | *Materials (files, scripts) consumed during the build | + | * [[Materials (files, scripts) consumed during the build]] |
Latest revision as of 19:21, 27 October 2024
Provenance attestation
Provenance attestations include facts about the build process, including details such as:
- Build timestamp
- Build parameters and environment
- Version control metadata
- Source code details
- Materials (files, scripts) consumed during the build
- Provenance attestation (https://slsa.dev/provenance/v0.2) with max mode exists
- slsa.dev
- SBOM Attestations
See also[edit]
Advertising: