Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

content: draft: Harden 'safe-expunging-process' #1203

Merged
merged 15 commits into from
Oct 25, 2024

Commits on Oct 23, 2024

  1. content: draft: Harden 'safe-expunging-process'

    fixes slsa-framework#1135
    
    Hardens the 'safe-expunging-process' by:
    
    1. Suggesting that SCSs should document and log changes when possible.
    2. SCSs should use multi-party approval when possible
    
    Also clarifies that some of these changes may need to be kept private
    to comply with local laws.
    
    Signed-off-by: Tom Hennen <tomhennen@google.com>
    TomHennen committed Oct 23, 2024
    Configuration menu
    Copy the full SHA
    f5352ba View commit details
    Browse the repository at this point in the history
  2. strengthen requirement for non-legal changes

    Signed-off-by: Tom Hennen <tomhennen@google.com>
    TomHennen committed Oct 23, 2024
    Configuration menu
    Copy the full SHA
    690fd9b View commit details
    Browse the repository at this point in the history
  3. Update docs/spec/draft/source-requirements.md

    Co-authored-by: Zachariah Cox <zachariahcox@github.com>
    Signed-off-by: Tom Hennen <TomHennen@users.noreply.github.com>
    TomHennen and zachariahcox committed Oct 23, 2024
    Configuration menu
    Copy the full SHA
    72dc8ef View commit details
    Browse the repository at this point in the history
  4. Update docs/spec/draft/source-requirements.md

    Co-authored-by: Zachariah Cox <zachariahcox@github.com>
    Signed-off-by: Tom Hennen <TomHennen@users.noreply.github.com>
    TomHennen and zachariahcox committed Oct 23, 2024
    Configuration menu
    Copy the full SHA
    3e446a5 View commit details
    Browse the repository at this point in the history
  5. limit expunging to legal requests

    Signed-off-by: Tom Hennen <tomhennen@google.com>
    TomHennen committed Oct 23, 2024
    Configuration menu
    Copy the full SHA
    a8832cb View commit details
    Browse the repository at this point in the history
  6. make linter happy

    Signed-off-by: Tom Hennen <tomhennen@google.com>
    TomHennen committed Oct 23, 2024
    Configuration menu
    Copy the full SHA
    15a645d View commit details
    Browse the repository at this point in the history

Commits on Oct 24, 2024

  1. Update docs/spec/draft/source-requirements.md

    Co-authored-by: Aditya Sirish <8928778+adityasaky@users.noreply.github.com>
    Signed-off-by: Tom Hennen <TomHennen@users.noreply.github.com>
    TomHennen and adityasaky authored Oct 24, 2024
    Configuration menu
    Copy the full SHA
    c9c5614 View commit details
    Browse the repository at this point in the history
  2. Update docs/spec/draft/source-requirements.md

    Co-authored-by: Aditya Sirish <8928778+adityasaky@users.noreply.github.com>
    Signed-off-by: Tom Hennen <TomHennen@users.noreply.github.com>
    TomHennen and adityasaky authored Oct 24, 2024
    Configuration menu
    Copy the full SHA
    5b63aac View commit details
    Browse the repository at this point in the history
  3. simplify wording of process

    Signed-off-by: Tom Hennen <tomhennen@google.com>
    TomHennen committed Oct 24, 2024
    Configuration menu
    Copy the full SHA
    240c95b View commit details
    Browse the repository at this point in the history
  4. Update docs/spec/draft/source-requirements.md

    Co-authored-by: Aditya Sirish <8928778+adityasaky@users.noreply.github.com>
    Signed-off-by: Tom Hennen <TomHennen@users.noreply.github.com>
    TomHennen and adityasaky authored Oct 24, 2024
    Configuration menu
    Copy the full SHA
    a3ff742 View commit details
    Browse the repository at this point in the history
  5. Update docs/spec/draft/source-requirements.md

    Co-authored-by: Aditya Sirish <8928778+adityasaky@users.noreply.github.com>
    Signed-off-by: Tom Hennen <TomHennen@users.noreply.github.com>
    TomHennen and adityasaky authored Oct 24, 2024
    Configuration menu
    Copy the full SHA
    5af39ff View commit details
    Browse the repository at this point in the history
  6. multi-party clarification

    Signed-off-by: Tom Hennen <tomhennen@google.com>
    TomHennen committed Oct 24, 2024
    Configuration menu
    Copy the full SHA
    9199882 View commit details
    Browse the repository at this point in the history
  7. Configuration menu
    Copy the full SHA
    ccca684 View commit details
    Browse the repository at this point in the history
  8. multi-party clarification

    Signed-off-by: Tom Hennen <tomhennen@google.com>
    TomHennen committed Oct 24, 2024
    Configuration menu
    Copy the full SHA
    075d768 View commit details
    Browse the repository at this point in the history
  9. Update docs/spec/draft/source-requirements.md

    Co-authored-by: Marcela Melara <marcela.melara@intel.com>
    Signed-off-by: Tom Hennen <TomHennen@users.noreply.github.com>
    TomHennen and marcelamelara authored Oct 24, 2024
    Configuration menu
    Copy the full SHA
    ab601b2 View commit details
    Browse the repository at this point in the history