aspects of security.
3. **[Technical controls][slsa-controls]:** To record provenance and detect or
prevent non-compliance.
Ultimately, the software consumer decides whom to trust and what standards to
enforce. In this light, accreditation is a means to transfer trust across
......@@ -38,6 +38,8 @@ an accreditation process and technical controls over time. In the interim, these
levels can provide value as guidelines for how to secure a software supply
## Principles
We suggest initially focusing on the following two main principles:
