💾 Archived View for freeshell.de › tldr › in-toto-run.gmi captured on 2023-11-04 at 12:35:14. Gemini links have been rewritten to link to archived content

View Raw

More Information

⬅️ Previous capture (2022-04-28)

-=-=-=-=-=-=-

in-toto-run

Generating link metadata while carrying out a supply chain step.

More information.

in-toto-run -n {tag} --products {.} -k {key_file} -- {git tag v1.0}
in-toto-run -n {package} -m {project} -p {project.tar.gz} -- {tar czf project.tar.gz project}
in-toto-run -n {review} -k {key_file} -m {document.pdf} -x
in-toto-run -n {scan} -k {key_file} -p {report.json} -- {/bin/sh -c "trivy -o report.json -f json <IMAGE>"}
Copyright © 2014—present the tldr-pages team and contributors.
This work is licensed under the Creative Commons Attribution 4.0 International License (CC-BY).

CC-BY