You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
| aud | aud | aud | aud | N/A | Only used to validate the JWT. |
195
-
| iss | iss | iss | iss | Issuer | This already exists. For example: https://token.actions.githubusercontent.com|
196
-
| exp | exp | exp | exp | N/A | Only used to validate the JWT. |
197
-
| nbf | nbf | nbf | nbf | N/A | Only used to validate the JWT. Optional, as per the OIDC spec |
198
-
| iat | iat | iat | iat | N/A | Only used to validate the JWT. |
199
-
| server_url + job_workflow_ref | ci_config_ref_uri ([WIP][gitlab-wip-cliams]) | ?? | ?? | Build Signer URI | Reference to specific build instructions that are responsible for signing. Can be the same as Build Config URI. For example a reusable workflow in GitHub Actions or a Circle CI Orbs. |
200
-
| job_workflow_sha | ci_config_sha ([WIP][gitlab-wip-cliams]) | ?? | ?? | Build Signer Digest | An immutable reference to the specific version of the build instructions that is responsible for signing. Should include the digest type followed by the digest, e.g. `sha1:abc123`. |
201
-
| runner_environment | runner_environment | ?? | ?? | Runner Environment | For platforms to specify whether the build took place in platform-hosted cloud infrastructure or customer-hosted infrastructure. For example: `platform-hosted` and `self-hosted`. |
202
-
| server_url + repository | server_url + project_path | ?? | ?? | Source Repository URI | Should include a fully qualified repository URL. |
203
-
| sha | sha | ?? | build_commit | Source Repository Digest | An immutable reference to a specific version of the source code. Should include the digest type followed by the digest, e.g. `sha1:abc123`. |
204
-
| ref | ref | ?? | build_branch | Source Repository Ref | The source ref that the build run was based upon. For example: refs/head/main. |
205
-
| repository_id | project_id | ?? | ?? | Source Repository Identifier | Stable identifier for the owner of the source repository. |
206
-
| server_url + repository_owner | server_url + namespace_path | ?? | ?? | Source Repository Owner URI | Fully qualified URL for the owner of the source repository. |
207
-
| repository_owner_id | namespace_id | ?? | ?? | Source Repository Owner Identifier | Stable identifier for the owner of the source repository. |
208
-
| server_url + workflow_ref | ci_config_ref_uri ([WIP][gitlab-wip-cliams]) | ?? | ?? | Build Config URI | A reference to the initiating build instructions. |
209
-
| workflow_sha | ci_config_sha ([WIP][gitlab-wip-cliams]) | ?? | ?? | Build Config Digest | An immutable reference to the specific version of the top-level build instructions. Should include the digest type followed by the digest, e.g. `sha1:abc123`. |
210
-
| event_name | pipeline_source | ?? | ?? | Build Trigger | The event or action that triggered the build. |
211
-
| server_url + repository + "/actions/runs/" + run_id + "/attempts/" + run_attempt | server_url + project_path + /-/jobs/ + job_id | ?? | ?? | Run Invocation URI | An immutable identifier that can uniquely identify the build execution |
212
-
| repository_visibility | project_visibility | ?? | ?? | Source Repository Visibility At Signing | Source repository visibility at the time of signing the certificate |
| aud | aud | aud | aud |aud |N/A | Only used to validate the JWT. |
195
+
| iss | iss | iss | iss |iss |Issuer | This already exists. For example: https://token.actions.githubusercontent.com|
196
+
| exp | exp | exp | exp |exp |N/A | Only used to validate the JWT. |
197
+
| nbf | nbf | nbf | nbf |nbf |N/A | Only used to validate the JWT. Optional, as per the OIDC spec |
198
+
| iat | iat | iat | iat |iat |N/A | Only used to validate the JWT. |
199
+
| server_url + job_workflow_ref | ci_config_ref_uri ([WIP][gitlab-wip-cliams]) | ?? | ?? |platform_url + /build/ + workflow_id |Build Signer URI | Reference to specific build instructions that are responsible for signing. Can be the same as Build Config URI. For example a reusable workflow in GitHub Actions or a Circle CI Orbs. |
200
+
| job_workflow_sha | ci_config_sha ([WIP][gitlab-wip-cliams]) | ?? | ?? | N/A | Build Signer Digest | An immutable reference to the specific version of the build instructions that is responsible for signing. Should include the digest type followed by the digest, e.g. `sha1:abc123`. |
201
+
| runner_environment | runner_environment | ?? | ?? |runner_environment |Runner Environment | For platforms to specify whether the build took place in platform-hosted cloud infrastructure or customer-hosted infrastructure. For example: `platform-hosted` and `self-hosted`. |
202
+
| server_url + repository | server_url + project_path | ?? | ?? |scm_repo_url |Source Repository URI | Should include a fully qualified repository URL. |
203
+
| sha | sha | ?? | build_commit |N/A |Source Repository Digest | An immutable reference to a specific version of the source code. Should include the digest type followed by the digest, e.g. `sha1:abc123`. |
204
+
| ref | ref | ?? | build_branch |scm_ref |Source Repository Ref | The source ref that the build run was based upon. For example: refs/head/main. |
205
+
| repository_id | project_id | ?? | ?? | N/A | Source Repository Identifier | Stable identifier for the owner of the source repository. |
206
+
| server_url + repository_owner | server_url + namespace_path | ?? | ?? | N/A | Source Repository Owner URI | Fully qualified URL for the owner of the source repository. |
207
+
| repository_owner_id | namespace_id | ?? | ?? | N/A | Source Repository Owner Identifier | Stable identifier for the owner of the source repository. |
208
+
| server_url + workflow_ref | ci_config_ref_uri ([WIP][gitlab-wip-cliams]) | ?? | ?? |platform_url + /api/pipelines/ + pipeline_id |Build Config URI | A reference to the initiating build instructions. |
209
+
| workflow_sha | ci_config_sha ([WIP][gitlab-wip-cliams]) | ?? | ?? | N/A | Build Config Digest | An immutable reference to the specific version of the top-level build instructions. Should include the digest type followed by the digest, e.g. `sha1:abc123`. |
210
+
| event_name | pipeline_source | ?? | ?? |N/A |Build Trigger | The event or action that triggered the build. |
211
+
| server_url + repository + "/actions/runs/" + run_id + "/attempts/" + run_attempt | server_url + project_path + /-/jobs/ + job_id | ?? | ?? |platform_url + /build/ + workflow_id |Run Invocation URI | An immutable identifier that can uniquely identify the build execution |
212
+
| repository_visibility | project_visibility | ?? | ?? |N/A |Source Repository Visibility At Signing | Source repository visibility at the time of signing the certificate |
0 commit comments