Skip to content

Clarify role of attestations in SLSA #1508

@adityasaky

Description

@adityasaky

We should expand how we talk about attestations to clarify that each attestation is intended as evidence of meeting certain track requirements. In addition, we should discuss the value of having this evidence recorded in a systematic manner, and the additional security properties they enable (i.e., properties that are distinct from the other track requirements themselves).

Related to #1505 #1459.

Metadata

Metadata

Assignees

Labels

clarificationClarification of the spec, without changing meaningsource-track

Type

No type

Projects

Status

🆕 New

Status

No status

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions