tag-security
tag-security copied to clipboard
[Proposal] Guidance for Confidential Supply Chains
trafficstars
Description: what's your idea?
After discussion with the Confidential computing project, it seems like there is an opportunity for collaboration to provide guidance for projects to create a confidential supply chain. This could be part of the supply chain whitepaper, or a separate document.
Impact: Describe the customer impact of the problem. Who will this help? How will it help them?
This will help projects interested in creating a confidential supply chain
Scope: How much effort will this take? ok to provide a range of options if or "not yet determined" for initial proposals. Feel free to include proposed tasks below or link a Google doc
Intent to lead:
- [ ] I volunteer to be a project lead on this proposal if the community is interested in pursing this work. This statement of intent does not preclude others from co-leading or becoming lead in my stead.
Proposal to Project:
- [ ] Added to the planned meeting template for mm dd
- [ ] Raised in a Security TAG meeting to determine interest - mm dd
- [ ] Collaborators comment on issue for determine interest and nominate project lead
- [ ] Scope determined via meeting mm dd and/or shared document add link with call for participation in #tag-security slack channel thread add link and mailing list email add link
- [ ] Scope presented to Security TAG leadership and Sponsor is assigned
TO DO
- [ ] Security TAG Leadership Representative:
- [ ] Project leader(s):
- [ ] Issue is assigned to project leaders and Security TAG Leadership Representative
- [ ] Project Members:
- [ ] Fill in addition TODO items here so the project team and community can see progress!
- [ ] Scope
- [ ] Deliverable(s)
- [ ] Project Schedule
- [ ] Slack Channel (as needed)
- [ ] Meeting Time & Day:
- [ ] Meeting Notes (link)
- [ ] Meeting Details (zoom or hangouts link)
- [ ] Retrospective