Commit d2d0a07
Resolve code scanning alerts (#13)
* Halnasri resolve tt confidence feedback (#21)
* Resolve TT-CHANGES feedback (nlohmann#115)
* enhaced doc in concept.rst
* enhanced documentation of the scoring
* review comments fixed and Example claculating graph added
* Added AOUs to TA-CONSTRAINTS
* add CI workflow for checking SME reviews (nlohmann#110)
* add CI workflow for checking SME reviews
* give pull request read permission
* fix indentation
* fix typo
* fix typo
* fix artifact collection trigger
* reformulate JLS-05
* removed AOUs from non-TA-CONSTRAINTS links
* align with current state of working branch
* again
* enhaced doc in concept.rst
* enhanced documentation of the scoring
* review comments fixed and Example claculating graph added
* unfinished commit
* Adapted overall statement formulation
* remove WFJ-12 whitespace
* Added "provided by nlohmann/json" to WFJ-07
* removed "library" from TA-METHODOLOGIES
* Added nlohmann/json to TT-CONSTRUCTION
* fix typo in NPF-01
* fixed score -> score-json in TT-CONFIDENCE
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify confidence measurement in nlohmann/json
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Fix typo in TA-FIXES.md regarding repository name
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Fix typo in TA-ITERATIONS.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Fix typo in TA-ITERATIONS.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify release construction for nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify source mirroring for nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update wording for nlohmann/json library reference
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reporting of score-json implementation issues
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify dependency storage requirements for nlohmann/json
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify usage of nlohmann/json library in AOU-19
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify wording on bug review for nlohmann/json
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify service name in NJF-02.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library in NJF-03
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify service description in NJF-04.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* changed "service provided by" convention
* Fix reference to score-json in AOU-08.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/statements/JLS-24.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/tenets/TT-CHANGES.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/tenets/TT-RESULTS.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/tenets/TT-PROVENANCE.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/tenets/TT-EXPECTATIONS.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/tenets/TT-CONSTRUCTION.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/tenets/TT-CONFIDENCE.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/statements/JLS-25.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update JLS-14.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Fix merge conflict in JLS-05.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/assumptions-of-use/AOU-17.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Implemented custom include_list reference
* Removed JLS-27 and its link, added JLS-34 and its link to TA-FIXES
* added README documentation for IncludeListReference
* changed __str__ method of IncludeListReference to more descriptive title
* removed method doc for as_markdown in IncludeListReference
* changed __str__ of IncludeListReference
* reworked content method in IncludeListReference
* small change to README
* Update TSF/trustable/statements/JLS-34.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Erikhu1 new tsf items (nlohmann#125)
* change AOU-27
* add new statements
* update JLS-05
* add release notes reference to JLS-05
* remove internal comment
* separate CVE triaging into own statement
* update JLS-05
* name specific branch instead of default
* split JLS-06
* fix typos
* remove unnecessary evidence config
* change reference type of release notes
* update JLS-19
* specify repo
* update JLS-05
* update JLS-06 and JLS-35
* delete non ta-constraints AOU links
* Update TSF/trustable/statements/JLS-05.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-11.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-19.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-28.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-29.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-30.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-31.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-32.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-33.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* add some references and scores
* remove comment
* update aou-29
* fix test_str_include_list test reference
* add reference to JLS-25
* add reference to JLS-02
* add reference to JLS-06
* update JLS-26
* add reference to JLS-29
* add reference to JLS-30
* update score for JLS-30
* update JLS-35
* Update TSF/trustable/statements/JLS-28.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-29.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-30.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* remove duplicate statement
* Update TSF/trustable/statements/JLS-29.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* add statement for SAST
* add link for JLS-34
* add score on JLS-32
* add score on JLS-33
* add score on JLS-34
* update JLS-26
* fix typo
* add missing quotation marks
---------
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
* delete unused items
* fix post create script
* fix typos
* re-add JLS-27
* remove duplicated tests
* update concept section
* clean up
* corrected on item in the table and change the example in the graph
* fix typos in concept
* score --> trustable score
* .png --> .svg
* 0.81
# Conflicts:
# TSF/docs/score_calculation_example.svg
* add support of fork PRs
* newline EOF
* fix typo
* add reference to JLS-30
* add reference to JLS-11
* change repo names
* fix typo
* reformulate AOU-05
* clarify AOU-10
* update JLS-01
* update JLS-35
* update JLS-35
* udpate JLS-05
* add evidence to JLS-07
* update JLS-12
* Changed all statement occurrences of score-json to eclipse-score/inc_nlohmann_json
* Restored JLS-05 and JLS-27 tto pre-commit state
* fix typo
* Update TSF/trustable/no-json-faults/NJF-06.6.0.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
---------
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: Luca <luca.fueger@d-fine.com>
* add context files (#5)
* add context files
* remove references to checklist files
* add answer fields
* explain component evidence
* cleanup
* update to trudag v2025.10.22 (#4)
* update to trudag v2025.10.22
* upgrade pip
* upgrade pip in test_publication workflow
* pip install requests
* adding new statements to TA-METHODOLOGIES and fixing statements from TA-CONFIDENCE
* added references to JLS 40 and 42
* Update TSF/trustable/statements/JLS-43.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/trustable/statements/JLS-42.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/trustable/statements/JLS-37.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/trustable/statements/JLS-09.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/trustable/statements/JLS-08.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* changed JLS08 to be more clear
* corrected the statement of JLS-37
* corrected the statement of JLS-41
* corrected the file path in JLS-36
* reformulated the statement JLS-41
* split the statement of JLS-40 into tow
* only one valitator
* more clear statement in JLS-41
* '
* added a reference to JLS-13 and reformulated the statement
* added answers to the evidence lists and to the checklists of TA-CONFIDENCE and TA-METHODOLOGIES
* fixed TA-CONFIDENCE
* fixed TA-METHODOLOGIES
* .
* corrected JLS-13
* typo
* added new reference to JLS-08
* edited one answer of TA-Methodologies context file
* Update TSF/trustable/statements/JLS-08.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/trustable/statements/JLS-08.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Add https evidence
Added evidence configuration for response time and URL.
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Fix formatting in JLS-08.md
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Re add AOU-30
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
---------
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: Luca <luca.fueger@d-fine.com>
* Resolve TT-CONSTRUCTION Feedback (#23)
* Moving changes from json to inc_nlohmann_json
* Added checklist and evidence for TA-RELEASES
* Worked through TA-Iterations checklist and evidence
* added checklist and evidence for TA-TESTS
* fix smaller details
* Update TSF/trustable/assertions/TA-ITERATIONS_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/assertions/TA-ITERATIONS_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/assertions/TA-RELEASES_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* resolved "binary" checklist points
* Added JLS-52
* added references for newly created JLS-52
* Update TSF/trustable/statements/JLS-52.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* added verbose file reference to JLS-51
* Update TSF/trustable/statements/JLS-51.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* deleted AOU-08 checklist references
* added JLS-51 link to TA-ITERATIONS, removed link to TA-RELEASES
* deleted JLS-21 including its links
* deleted JLS-21
* removed link TA-ITERATIONS -> JLS-51
* filled in JLS-53
* comments
* added TA-Releases checklist answer
* changed target to target_seconds
* Update TSF/trustable/assertions/TA-RELEASES_CONTEXT.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* fixes for JLS-16
* adapted JLS-53 formulation
* fix for JLS-16
* Added item reference to JLS-53
* Update TA-RELEASES_CONTEXT.md
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* created further statements
* Update TSF/trustable/statements/JLS-61.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* Update TSF/trustable/statements/JLS-61.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* Update TSF/trustable/statements/JLS-61.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* Update TSF/trustable/statements/JLS-61.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* added link from JLS-53 to JLS-14 and restructured JLS-52
* Provided evidence for JLS-63
* changed JLS-52, JLS-64 and JLS-65 formulation
* smaller changes
* Added references to JLS-65
* changed JLS-63 reference types
* ...
* completed JLS-64
* adding response time validator to JLS-64
* specifying remaining TODOs
* Specify remaining work #2
* deleted JLS-66
* reworked JLS-62 and deleted 46 and 66
* adapted TA-TESTS_CONTEXT
* fixed JLS-62
* Update TSF/trustable/assertions/TA-RELEASES_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* Update TSF/trustable/assertions/TA-RELEASES_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* Update TSF/trustable/statements/JLS-16.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* added non_reproducible_tests and its reference to JLS-62
---------
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
Co-authored-by: LucaFgr <luca.fueger@d-fine.com>
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
* Erikhu1 add missing links (nlohmann#25)
* add missing links
* fix faulty reference
* Reference corrections (#19)
* link TA-BEHAVIOURS to JLS-27 (#9)
* update JLS-01
* update JLS-05
* update JLS-11
* update JLS-12
* update JLS-29
* update JLS-30
* update JLS-35
* remove duplicate link
* Resolve TT-PROVENANCE Feedback (#14)
* added checklist items to TA_INPUTS
* move TSF instructions
* add JLS-47 and link TA-INPUTS to JLS-34
* create JLS-48
* update TA-INPUTS context
* update TA-INPUTS context
* add JLS-49
* update inputs context
* pin third party tools list to 3.12.0
* add JLS-50 and assessment of third party tools
* update TA-INPUTS context
* add reference to JLS-49
* link TA-RELEASES -> JLS-49
* Enhance third-party tools assessment documentation (#18)
* Enhance third-party tools assessment documentation
Expanded the assessment details for various third-party tools used in nlohmann/json
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Enhance documentation for third-party tools assessment 2
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Enhance third-party tools assessment details 3
Added comprehensive descriptions for Hedley, lcov, libFuzzer, Material for MkDocs, MkDocs, OSS-Fuzz, Probot, and Valgrind.
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Revise risk categorization and tool assessment details
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* small fixes
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/docs/third_party_tools_assessment.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/docs/third_party_tools_assessment.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/docs/third_party_tools_assessment.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/docs/third_party_tools_assessment.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/docs/third_party_tools_assessment.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/docs/third_party_tools_assessment.md
typos
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* typo
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* rename link
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* typo
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* typo -
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Enhance OSS-Fuzz section with issue links
Updated the OSS-Fuzz role description to include links to specific GitHub issues.
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
---------
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
* add links from TA-SUPPLYCHAIN
* add answer to supply chain context
* remove dead link
* create JLS-66
* link JLS-66
* finish answer SUPPLY_CHAIN context
* misc fixes
* misc fixes
* misc fixes
* Update TSF/trustable/assertions/TA-SUPPLY_CHAIN_CONTEXT.md
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* misc fixes
* update JLS-49
* Update TSF/README.md
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
---------
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
Co-authored-by: erikhu1 <erik.hu@d-fine.com>
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
* halnasri-Revisit TT-RESULTS (#17)
* revisit TT-RESULTS
* rebase
* resolve conflict
* fixing some typos
* AoU --> AOU
* reformulated JLS-22 and completed the checklist of TA-DATA
* Update TSF/trustable/statements/JLS-17.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Fix typo in 'misbehaviours' in documentation
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Fix typo in file path for nlohmann misbehaviours
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Clarify answers in TA-ANALYSIS_CONTEXT.md
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* adress comment of TA-DATA context file
* fixed some issues in the TA-ANALYSIS context file
* typo in JLS-17
* added a reference to TA-ANALYSIS_CONTEXT.md
* added some answers to the checklist of TA-VALIDATION
* fix typos
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* added one answer to the TA-VALIDATION and fixed typos
* answered checklist questions of TA-VALIDATION
* reformulated JLS-17 and added the failure rate analysis
* fix some checklist questions
* typo
* typos
* typos and rewrite JLS 17
* Update TSF/trustable/assertions/TA-ANALYSIS_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/trustable/assertions/TA-ANALYSIS_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* link formating
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* link formating
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
---------
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
* added TA-Releases -> JLS-53 link (nlohmann#27)
Co-authored-by: LucaFgr <luca.fueger@d-fine.com>
* bump urllib3 version from 2.5.0 to 2.6.0 (nlohmann#26)
* bump urllib3 version from 2.5.0 to 2.6.0
* nitpick EOF line
* Erikhu1 sync with prod (nlohmann#31)
* Adding scores for TT-Changes
* fix validators function signature
* add new trudag dependencies
* set review status of reviewed items again
* fix outdated dependency
---------
Co-authored-by: aschemmel-git <alexander.schemmel@bmw.de>
* Halnasri fix statements (nlohmann#30)
* fix JLS-08
* fix JLS-08 and JLS-10
* fix JLS-20
* fix JLS-11 and JLS-28
* fix JLS-16
* 2.0 --> 2
* Update JLS-11
* fix JLS-27
* fix JLS-65
* fix JLS-63
* added JLS-19 to build instructions
* lcov and coverity
* added clang-tidy
* removed one validator from JLS-16
* fix lcov and coverity part
* edited reference type for scorecard and inrospector
* fix JLS-02
* Removed multiple validators from statements by splitting them up (nlohmann#35)
* removed multiple validators from statements by splitting them up
* removed combinator validator
* fix JLS-11
* Update TSF/trustable/statements/JLS-58.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* newline EOF
* readded scores for JLS-11
---------
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
Co-authored-by: LucaFgr <luca.fueger@d-fine.com>
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
* Erikhu1 sync with prod (nlohmann#38)
* Adding scores for TT-Changes
* Update 4 trustable tenets (#9)
* Halnasri resolve tt confidence feedback (#21)
* Resolve TT-CHANGES feedback (nlohmann#115)
* enhaced doc in concept.rst
* enhanced documentation of the scoring
* review comments fixed and Example claculating graph added
* Added AOUs to TA-CONSTRAINTS
* add CI workflow for checking SME reviews (nlohmann#110)
* add CI workflow for checking SME reviews
* give pull request read permission
* fix indentation
* fix typo
* fix typo
* fix artifact collection trigger
* reformulate JLS-05
* removed AOUs from non-TA-CONSTRAINTS links
* align with current state of working branch
* again
* enhaced doc in concept.rst
* enhanced documentation of the scoring
* review comments fixed and Example claculating graph added
* unfinished commit
* Adapted overall statement formulation
* remove WFJ-12 whitespace
* Added "provided by nlohmann/json" to WFJ-07
* removed "library" from TA-METHODOLOGIES
* Added nlohmann/json to TT-CONSTRUCTION
* fix typo in NPF-01
* fixed score -> score-json in TT-CONFIDENCE
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify confidence measurement in nlohmann/json
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Fix typo in TA-FIXES.md regarding repository name
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Fix typo in TA-ITERATIONS.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Fix typo in TA-ITERATIONS.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify release construction for nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify source mirroring for nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update wording for nlohmann/json library reference
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reporting of score-json implementation issues
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify dependency storage requirements for nlohmann/json
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify usage of nlohmann/json library in AOU-19
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify wording on bug review for nlohmann/json
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify service name in NJF-02.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify reference to nlohmann/json library in NJF-03
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Clarify service description in NJF-04.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* changed "service provided by" convention
* Fix reference to score-json in AOU-08.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/statements/JLS-24.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/tenets/TT-CHANGES.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/tenets/TT-RESULTS.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/tenets/TT-PROVENANCE.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/tenets/TT-EXPECTATIONS.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/tenets/TT-CONSTRUCTION.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/tenets/TT-CONFIDENCE.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/statements/JLS-25.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update JLS-14.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Fix merge conflict in JLS-05.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/assumptions-of-use/AOU-17.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Implemented custom include_list reference
* Removed JLS-27 and its link, added JLS-34 and its link to TA-FIXES
* added README documentation for IncludeListReference
* changed __str__ method of IncludeListReference to more descriptive title
* removed method doc for as_markdown in IncludeListReference
* changed __str__ of IncludeListReference
* reworked content method in IncludeListReference
* small change to README
* Update TSF/trustable/statements/JLS-34.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Erikhu1 new tsf items (nlohmann#125)
* change AOU-27
* add new statements
* update JLS-05
* add release notes reference to JLS-05
* remove internal comment
* separate CVE triaging into own statement
* update JLS-05
* name specific branch instead of default
* split JLS-06
* fix typos
* remove unnecessary evidence config
* change reference type of release notes
* update JLS-19
* specify repo
* update JLS-05
* update JLS-06 and JLS-35
* delete non ta-constraints AOU links
* Update TSF/trustable/statements/JLS-05.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-11.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-19.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-28.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-29.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-30.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-31.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-32.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-33.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* add some references and scores
* remove comment
* update aou-29
* fix test_str_include_list test reference
* add reference to JLS-25
* add reference to JLS-02
* add reference to JLS-06
* update JLS-26
* add reference to JLS-29
* add reference to JLS-30
* update score for JLS-30
* update JLS-35
* Update TSF/trustable/statements/JLS-28.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-29.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* Update TSF/trustable/statements/JLS-30.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* remove duplicate statement
* Update TSF/trustable/statements/JLS-29.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* add statement for SAST
* add link for JLS-34
* add score on JLS-32
* add score on JLS-33
* add score on JLS-34
* update JLS-26
* fix typo
* add missing quotation marks
---------
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
* delete unused items
* fix post create script
* fix typos
* re-add JLS-27
* remove duplicated tests
* update concept section
* clean up
* corrected on item in the table and change the example in the graph
* fix typos in concept
* score --> trustable score
* .png --> .svg
* 0.81
# Conflicts:
# TSF/docs/score_calculation_example.svg
* add support of fork PRs
* newline EOF
* fix typo
* add reference to JLS-30
* add reference to JLS-11
* change repo names
* fix typo
* reformulate AOU-05
* clarify AOU-10
* update JLS-01
* update JLS-35
* update JLS-35
* udpate JLS-05
* add evidence to JLS-07
* update JLS-12
* Changed all statement occurrences of score-json to eclipse-score/inc_nlohmann_json
* Restored JLS-05 and JLS-27 tto pre-commit state
* fix typo
* Update TSF/trustable/no-json-faults/NJF-06.6.0.md
Co-authored-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
---------
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: Luca <luca.fueger@d-fine.com>
* add context files (#5)
* add context files
* remove references to checklist files
* add answer fields
* explain component evidence
* cleanup
* update to trudag v2025.10.22 (#4)
* update to trudag v2025.10.22
* upgrade pip
* upgrade pip in test_publication workflow
* pip install requests
* adding new statements to TA-METHODOLOGIES and fixing statements from TA-CONFIDENCE
* added references to JLS 40 and 42
* Update TSF/trustable/statements/JLS-43.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/trustable/statements/JLS-42.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/trustable/statements/JLS-37.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/trustable/statements/JLS-09.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/trustable/statements/JLS-08.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* changed JLS08 to be more clear
* corrected the statement of JLS-37
* corrected the statement of JLS-41
* corrected the file path in JLS-36
* reformulated the statement JLS-41
* split the statement of JLS-40 into tow
* only one valitator
* more clear statement in JLS-41
* '
* added a reference to JLS-13 and reformulated the statement
* added answers to the evidence lists and to the checklists of TA-CONFIDENCE and TA-METHODOLOGIES
* fixed TA-CONFIDENCE
* fixed TA-METHODOLOGIES
* .
* corrected JLS-13
* typo
* added new reference to JLS-08
* edited one answer of TA-Methodologies context file
* Update TSF/trustable/statements/JLS-08.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/trustable/statements/JLS-08.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Add https evidence
Added evidence configuration for response time and URL.
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Fix formatting in JLS-08.md
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Re add AOU-30
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
---------
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: Luca <luca.fueger@d-fine.com>
* Resolve TT-CONSTRUCTION Feedback (#23)
* Moving changes from json to inc_nlohmann_json
* Added checklist and evidence for TA-RELEASES
* Worked through TA-Iterations checklist and evidence
* added checklist and evidence for TA-TESTS
* fix smaller details
* Update TSF/trustable/assertions/TA-ITERATIONS_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/assertions/TA-ITERATIONS_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* Update TSF/trustable/assertions/TA-RELEASES_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* resolved "binary" checklist points
* Added JLS-52
* added references for newly created JLS-52
* Update TSF/trustable/statements/JLS-52.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* added verbose file reference to JLS-51
* Update TSF/trustable/statements/JLS-51.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* deleted AOU-08 checklist references
* added JLS-51 link to TA-ITERATIONS, removed link to TA-RELEASES
* deleted JLS-21 including its links
* deleted JLS-21
* removed link TA-ITERATIONS -> JLS-51
* filled in JLS-53
* comments
* added TA-Releases checklist answer
* changed target to target_seconds
* Update TSF/trustable/assertions/TA-RELEASES_CONTEXT.md
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
* fixes for JLS-16
* adapted JLS-53 formulation
* fix for JLS-16
* Added item reference to JLS-53
* Update TA-RELEASES_CONTEXT.md
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* created further statements
* Update TSF/trustable/statements/JLS-61.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* Update TSF/trustable/statements/JLS-61.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* Update TSF/trustable/statements/JLS-61.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* Update TSF/trustable/statements/JLS-61.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* added link from JLS-53 to JLS-14 and restructured JLS-52
* Provided evidence for JLS-63
* changed JLS-52, JLS-64 and JLS-65 formulation
* smaller changes
* Added references to JLS-65
* changed JLS-63 reference types
* ...
* completed JLS-64
* adding response time validator to JLS-64
* specifying remaining TODOs
* Specify remaining work #2
* deleted JLS-66
* reworked JLS-62 and deleted 46 and 66
* adapted TA-TESTS_CONTEXT
* fixed JLS-62
* Update TSF/trustable/assertions/TA-RELEASES_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* Update TSF/trustable/assertions/TA-RELEASES_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* Update TSF/trustable/statements/JLS-16.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
* added non_reproducible_tests and its reference to JLS-62
---------
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
Co-authored-by: LucaFgr <luca.fueger@d-fine.com>
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
* Erikhu1 add missing links (nlohmann#25)
* add missing links
* fix faulty reference
* Reference corrections (#19)
* link TA-BEHAVIOURS to JLS-27 (#9)
* update JLS-01
* update JLS-05
* update JLS-11
* update JLS-12
* update JLS-29
* update JLS-30
* update JLS-35
* remove duplicate link
* Resolve TT-PROVENANCE Feedback (#14)
* added checklist items to TA_INPUTS
* move TSF instructions
* add JLS-47 and link TA-INPUTS to JLS-34
* create JLS-48
* update TA-INPUTS context
* update TA-INPUTS context
* add JLS-49
* update inputs context
* pin third party tools list to 3.12.0
* add JLS-50 and assessment of third party tools
* update TA-INPUTS context
* add reference to JLS-49
* link TA-RELEASES -> JLS-49
* Enhance third-party tools assessment documentation (#18)
* Enhance third-party tools assessment documentation
Expanded the assessment details for various third-party tools used in nlohmann/json
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Enhance documentation for third-party tools assessment 2
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Enhance third-party tools assessment details 3
Added comprehensive descriptions for Hedley, lcov, libFuzzer, Material for MkDocs, MkDocs, OSS-Fuzz, Probot, and Valgrind.
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Revise risk categorization and tool assessment details
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* small fixes
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/docs/third_party_tools_assessment.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/docs/third_party_tools_assessment.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/docs/third_party_tools_assessment.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/docs/third_party_tools_assessment.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/docs/third_party_tools_assessment.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/docs/third_party_tools_assessment.md
typos
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* typo
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* rename link
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* typo
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* typo -
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Enhance OSS-Fuzz section with issue links
Updated the OSS-Fuzz role description to include links to specific GitHub issues.
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
---------
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
* add links from TA-SUPPLYCHAIN
* add answer to supply chain context
* remove dead link
* create JLS-66
* link JLS-66
* finish answer SUPPLY_CHAIN context
* misc fixes
* misc fixes
* misc fixes
* Update TSF/trustable/assertions/TA-SUPPLY_CHAIN_CONTEXT.md
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
* misc fixes
* update JLS-49
* Update TSF/README.md
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
---------
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
Co-authored-by: erikhu1 <erik.hu@d-fine.com>
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
* halnasri-Revisit TT-RESULTS (#17)
* revisit TT-RESULTS
* rebase
* resolve conflict
* fixing some typos
* AoU --> AOU
* reformulated JLS-22 and completed the checklist of TA-DATA
* Update TSF/trustable/statements/JLS-17.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Fix typo in 'misbehaviours' in documentation
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Fix typo in file path for nlohmann misbehaviours
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Clarify answers in TA-ANALYSIS_CONTEXT.md
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* adress comment of TA-DATA context file
* fixed some issues in the TA-ANALYSIS context file
* typo in JLS-17
* added a reference to TA-ANALYSIS_CONTEXT.md
* added some answers to the checklist of TA-VALIDATION
* fix typos
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* added one answer to the TA-VALIDATION and fixed typos
* answered checklist questions of TA-VALIDATION
* reformulated JLS-17 and added the failure rate analysis
* fix some checklist questions
* typo
* typos
* typos and rewrite JLS 17
* Update TSF/trustable/assertions/TA-ANALYSIS_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* Update TSF/trustable/assertions/TA-ANALYSIS_CONTEXT.md
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* link formating
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
* link formating
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
---------
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: Erik Hu <erik.hu@d-fine.com>
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
* added TA-Releases -> JLS-53 link (nlohmann#27)
Co-authored-by: LucaFgr <luca.fueger@d-fine.com>
* bump urllib3 version from 2.5.0 to 2.6.0 (nlohmann#26)
* bump urllib3 version from 2.5.0 to 2.6.0
* nitpick EOF line
* Erikhu1 sync with prod (nlohmann#31) (nlohmann#32)
* Adding scores for TT-Changes
* fix validators function signature
* add new trudag dependencies
* set review status of reviewed items again
* fix outdated dependency
---------
Co-authored-by: aschemmel-git <alexander.schemmel@bmw.de>
* Halnasri fix statements (nlohmann#34)
* Erikhu1 sync with prod (nlohmann#31)
* Adding scores for TT-Changes
* fix validators function signature
* add new trudag dependencies
* set review status of reviewed items again
* fix outdated dependency
---------
Co-authored-by: aschemmel-git <alexander.schemmel@bmw.de>
* fix JLS-08
* fix JLS-08 and JLS-10
* fix JLS-20
* fix JLS-11 and JLS-28
* fix JLS-16
* 2.0 --> 2
* Update JLS-11
* fix JLS-27
* fix JLS-65
* fix JLS-63
* added JLS-19 to build instructions
* lcov and coverity
* added clang-tidy
* removed one validator from JLS-16
* fix lcov and coverity part
* edited reference type for scorecard and inrospector
* fix JLS-02
---------
Co-authored-by: aschemmel-git <alexander.schemmel@bmw.de>
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
---------
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: Luca <luca.fueger@d-fine.com>
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
Co-authored-by: aschemmel-git <alexander.schemmel@bmw.de>
* Bump urllib3 from 2.6.0 to 2.6.3 in /.devcontainer/S-CORE
Bumps [urllib3](https://github.com/urllib3/urllib3) from 2.6.0 to 2.6.3.
- [Release notes](https://github.com/urllib3/urllib3/releases)
- [Changelog](https://github.com/urllib3/urllib3/blob/main/CHANGES.rst)
- [Commits](urllib3/urllib3@2.6.0...2.6.3)
---
updated-dependencies:
- dependency-name: urllib3
dependency-version: 2.6.3
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com>
* Remove GitHub actions reference from JLS-16.md
Removed reference to GitHub actions page from JLS-16.md
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
---------
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: aschemmel-git <alexander.schemmel@bmw.de>
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: Luca <luca.fueger@d-fine.com>
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
* Erikhu1 fix code scanning alerts (nlohmann#40)
* restructure requirements file
* update trustable pins
* install reqs before trustable
---------
Signed-off-by: Luca Füger <luca.fueger@d-fine.com>
Signed-off-by: Erik Hu <erik.hu@d-fine.com>
Signed-off-by: halnasri <hatem.alnasri@d-fine.com>
Signed-off-by: LucaFue <luca.fueger@d-fine.de>
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: halnasri <hatem.alnasri@d-fine.com>
Co-authored-by: Luca <luca.fueger@d-fine.com>
Co-authored-by: LucaFue <luca.fueger@d-fine.de>
Co-authored-by: aschemmel-git <alexander.schemmel@bmw.de>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>1 parent 1300761 commit d2d0a07
File tree
16 files changed
+121
-232
lines changed- .devcontainer/S-CORE
- .dotstop_extensions
- .github
- workflows
- TSF/trustable/statements
16 files changed
+121
-232
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
87 | 87 | | |
88 | 88 | | |
89 | 89 | | |
90 | | - | |
| 90 | + | |
91 | 91 | | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
5 | 5 | | |
6 | 6 | | |
7 | 7 | | |
8 | | - | |
| 8 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
1 | 1 | | |
2 | | - | |
3 | 2 | | |
4 | 3 | | |
5 | 4 | | |
6 | 5 | | |
7 | 6 | | |
8 | 7 | | |
9 | 8 | | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
2 | 2 | | |
3 | 3 | | |
4 | 4 | | |
5 | | - | |
| 5 | + | |
6 | 6 | | |
7 | 7 | | |
8 | 8 | | |
| |||
111 | 111 | | |
112 | 112 | | |
113 | 113 | | |
| 114 | + | |
| 115 | + | |
| 116 | + | |
| 117 | + | |
114 | 118 | | |
115 | 119 | | |
116 | 120 | | |
117 | 121 | | |
| 122 | + | |
| 123 | + | |
| 124 | + | |
| 125 | + | |
118 | 126 | | |
119 | 127 | | |
120 | 128 | | |
| |||
212 | 220 | | |
213 | 221 | | |
214 | 222 | | |
215 | | - | |
| 223 | + | |
216 | 224 | | |
217 | 225 | | |
218 | 226 | | |
| |||
232 | 240 | | |
233 | 241 | | |
234 | 242 | | |
235 | | - | |
| 243 | + | |
236 | 244 | | |
237 | 245 | | |
238 | 246 | | |
| |||
307 | 315 | | |
308 | 316 | | |
309 | 317 | | |
310 | | - | |
| 318 | + | |
311 | 319 | | |
312 | 320 | | |
313 | 321 | | |
| |||
496 | 504 | | |
497 | 505 | | |
498 | 506 | | |
499 | | - | |
| 507 | + | |
500 | 508 | | |
501 | 509 | | |
502 | 510 | | |
| |||
509 | 517 | | |
510 | 518 | | |
511 | 519 | | |
512 | | - | |
| 520 | + | |
513 | 521 | | |
514 | 522 | | |
515 | 523 | | |
516 | | - | |
| 524 | + | |
517 | 525 | | |
518 | 526 | | |
519 | 527 | | |
| |||
536 | 544 | | |
537 | 545 | | |
538 | 546 | | |
539 | | - | |
| 547 | + | |
540 | 548 | | |
541 | 549 | | |
542 | 550 | | |
| |||
545 | 553 | | |
546 | 554 | | |
547 | 555 | | |
| 556 | + | |
| 557 | + | |
| 558 | + | |
| 559 | + | |
| 560 | + | |
| 561 | + | |
| 562 | + | |
| 563 | + | |
| 564 | + | |
| 565 | + | |
| 566 | + | |
| 567 | + | |
| 568 | + | |
| 569 | + | |
| 570 | + | |
| 571 | + | |
| 572 | + | |
| 573 | + | |
| 574 | + | |
| 575 | + | |
| 576 | + | |
| 577 | + | |
| 578 | + | |
| 579 | + | |
| 580 | + | |
| 581 | + | |
| 582 | + | |
| 583 | + | |
| 584 | + | |
| 585 | + | |
| 586 | + | |
| 587 | + | |
| 588 | + | |
| 589 | + | |
| 590 | + | |
| 591 | + | |
| 592 | + | |
| 593 | + | |
| 594 | + | |
| 595 | + | |
| 596 | + | |
| 597 | + | |
| 598 | + | |
| 599 | + | |
| 600 | + | |
| 601 | + | |
| 602 | + | |
| 603 | + | |
| 604 | + | |
548 | 605 | | |
549 | 606 | | |
550 | 607 | | |
551 | | - | |
| 608 | + | |
| 609 | + | |
| 610 | + | |
552 | 611 | | |
553 | 612 | | |
554 | 613 | | |
| |||
558 | 617 | | |
559 | 618 | | |
560 | 619 | | |
561 | | - | |
562 | | - | |
563 | | - | |
564 | | - | |
565 | | - | |
566 | | - | |
567 | | - | |
568 | | - | |
569 | | - | |
570 | | - | |
571 | | - | |
572 | | - | |
573 | | - | |
| 620 | + | |
| 621 | + | |
| 622 | + | |
| 623 | + | |
| 624 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
83 | 83 | | |
84 | 84 | | |
85 | 85 | | |
| 86 | + | |
| 87 | + | |
86 | 88 | | |
87 | 89 | | |
88 | 90 | | |
| |||
443 | 445 | | |
444 | 446 | | |
445 | 447 | | |
| 448 | + | |
446 | 449 | | |
447 | 450 | | |
448 | 451 | | |
| |||
479 | 482 | | |
480 | 483 | | |
481 | 484 | | |
| 485 | + | |
482 | 486 | | |
483 | 487 | | |
484 | 488 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
394 | 394 | | |
395 | 395 | | |
396 | 396 | | |
397 | | - | |
398 | | - | |
399 | | - | |
400 | | - | |
401 | | - | |
402 | | - | |
403 | | - | |
404 | | - | |
405 | | - | |
406 | | - | |
407 | | - | |
408 | | - | |
409 | | - | |
410 | | - | |
411 | | - | |
412 | | - | |
413 | | - | |
414 | | - | |
415 | | - | |
416 | | - | |
417 | | - | |
418 | | - | |
419 | | - | |
420 | | - | |
421 | | - | |
422 | | - | |
423 | | - | |
424 | | - | |
425 | | - | |
426 | | - | |
427 | | - | |
428 | | - | |
429 | | - | |
430 | | - | |
431 | | - | |
432 | | - | |
433 | | - | |
434 | | - | |
435 | | - | |
436 | | - | |
437 | | - | |
438 | | - | |
439 | | - | |
440 | | - | |
441 | | - | |
442 | | - | |
443 | | - | |
444 | | - | |
445 | | - | |
446 | | - | |
447 | | - | |
448 | | - | |
449 | | - | |
450 | | - | |
451 | | - | |
452 | 397 | | |
453 | 398 | | |
454 | 399 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
430 | 430 | | |
431 | 431 | | |
432 | 432 | | |
433 | | - | |
434 | | - | |
435 | | - | |
436 | | - | |
437 | | - | |
438 | | - | |
439 | | - | |
440 | | - | |
441 | | - | |
442 | | - | |
443 | | - | |
444 | | - | |
445 | | - | |
446 | | - | |
447 | | - | |
448 | | - | |
449 | | - | |
450 | | - | |
451 | | - | |
452 | | - | |
453 | | - | |
454 | | - | |
455 | | - | |
456 | | - | |
457 | | - | |
458 | | - | |
459 | | - | |
460 | | - | |
461 | | - | |
462 | | - | |
463 | | - | |
464 | | - | |
465 | | - | |
466 | | - | |
467 | | - | |
468 | | - | |
469 | | - | |
470 | | - | |
471 | | - | |
472 | | - | |
473 | | - | |
474 | | - | |
475 | | - | |
476 | | - | |
477 | | - | |
478 | | - | |
479 | | - | |
480 | | - | |
481 | | - | |
482 | | - | |
483 | | - | |
484 | | - | |
485 | | - | |
486 | | - | |
487 | | - | |
488 | | - | |
489 | | - | |
490 | | - | |
491 | | - | |
492 | | - | |
493 | | - | |
494 | | - | |
495 | | - | |
This file was deleted.
0 commit comments