Uploaded image for project: 'OpenShift Pipelines'
  1. OpenShift Pipelines
  2. SRVKP-3903

Define the initial set of rules and check to pass to be added to the catalog

    XMLWordPrintable

Details

    • 5

    Description

      Based on https://docs.google.com/document/d/1K8936oehsM6tftT2WHWHanS7GkyyoGgAYDAlCjvHV7k/edit#

      When pulling a Task from an external repository (a release), we need to enforce some rules and some checks. This issue is to track the work on defining these.

      • (e.g.) The Task is shipped as a bundle, and signed (cosign) – can verify the signature
      • Some simple test are provided
      • Provenance is generated and valid (define this better)

      Look into the following to get some thoughts and ideas:

      Attachments

        Activity

          People

            vdemeest Vincent Demeester
            vdemeest Vincent Demeester
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated: