Skip to content
GitLab
Menu
Projects
Groups
Snippets
/
Help
Help
Support
Community forum
Keyboard shortcuts
?
Submit feedback
Sign in / Register
Toggle navigation
Menu
Open sidebar
Shawn Webb
Slsa
Commits
4a780071
Unverified
Commit
4a780071
authored
Jun 02, 2021
by
Kim Lewandowski
Committed by
GitHub
Jun 02, 2021
Browse files
Merge pull request #41 from kimsterv/users
Small change to expand scope of SLSA users
parents
21f1f31f
94f04d67
Changes
1
Hide whitespace changes
Inline
Side-by-side
README.md
View file @
4a780071
...
...
@@ -78,10 +78,10 @@ SLSA addresses three issues:
*
Artifact signatures alone only prevent a subset of the attacks we care
about.
At a minimum, SLSA can be used as a set of guiding principles
within an
organization
. More importantly, SLSA allows us to talk about supply
chain risks
and mitigations in a common language. This allows us to communicate
and act on
those risks across organizational boundaries.
At a minimum, SLSA can be used as a set of guiding principles
for software
producers and consumers
. More importantly, SLSA allows us to talk about supply
chain risks
and mitigations in a common language. This allows us to communicate
and act on
those risks across organizational boundaries.
Numeric levels, in particular, are useful because they are simple. A decision
maker easily understands that SLSA 3 is better than SLSA 2 without understanding
...
...
Write
Preview
Supports
Markdown
0%
Try again
or
attach a new file
.
Attach a file
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to comment