ossf / wg-supply-chain-integrity

Our objective is to enable open source maintainers, contributors and end-users to understand and make decisions on the provenance of the code they maintain, produce and use.
https://openssf.org
Apache License 2.0
177 stars 33 forks source link

Add goal: allow trust between humans #32

Closed JanZerebecki closed 3 years ago

JanZerebecki commented 3 years ago

The other goals do not explicitly mention that decentralized trust is preferred over requiring centralized trust. Make this explicit by adding this goal. This is not merely something that arises from the threat model, but is a goal in itself.