slsa-framework / slsa-github-generator

Language-agnostic SLSA provenance generation for Github Actions
Apache License 2.0
394 stars 118 forks source link

[feature] Compliance test for TRW #1424

Open laurentsimon opened 1 year ago

laurentsimon commented 1 year ago

As part of the BYOB feature, we want to help TRW authors keep their code reliable and prevent it from breaking. This issue provides a wish list about what features we need for this compliance tests:

asraa commented 1 year ago

I think the other requirement besides making sure they've called the TW correctly and used the SLSA inputs from the token correctly is

EDIT: I have no idea why I keep clicking the wrong buttons. Sorry for closing/reopening