-
Epic
-
Resolution: Unresolved
-
Major
-
None
-
None
-
Tekton Ecosystem Security Infrastructure
-
False
-
None
-
False
-
To Do
-
SECFLOWOTL-75 - Red Hat Tekton catalog GA
-
67% To Do, 0% In Progress, 33% Done
-
-
This epics is 3 parts:
- Enforce that the tekton resources we pull are coming with attestation and sbom, as well as signed.
- Enhance our tooling (catalog-cd) to help users contributing their task to do that on release (and provide GitHub actions, ...)
- Enforce that the images being used are from trusted registries.
- is depended on by
-
SRVKP-3815 R&D Figure out how to include tests as part of attestations
- To Do