Skip to content

Practical document describing how to achieve SLSA compliance with GitHub #185

Open
@joshuagl

Description

@joshuagl

Start capturing a cookbook/recipe for how to use GitHub features to meet as many SLSA requirements as possible.

Several folks are hearing about SLSA for the first time thanks to a strong representation at KubeCon and similar, while SLSA is fresh in their mind it would be good to help them understand how to achieve SLSA compliance with the tools they are using today.

For many open source projects, the tools in use are GitHub.

This will be a living document because things are changing quickly in this space as SLSA gains traction, tooling is developed and platforms evolve.

Originally posted by @joshuagl in #180 (comment)

Metadata

Metadata

Assignees

Labels

guidanceGuiding users how to achieve SLSA

Type

No type

Projects

Status

🏗 In progress

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions