CRob

Results 144 comments of CRob

Neat! I learned a lot reading this. I don't know what might be missing. MOAR please!!

Related to: https://github.com/ossf/security-baseline/pull/427 https://github.com/ossf/security-baseline/pull/428 https://github.com/ossf/security-baseline/pull/429 https://github.com/ossf/security-baseline/pull/430 https://github.com/ossf/security-baseline/pull/431 https://github.com/ossf/security-baseline/pull/432 https://github.com/ossf/security-baseline/pull/433

Related to: https://github.com/ossf/security-baseline/pull/427 https://github.com/ossf/security-baseline/pull/428 https://github.com/ossf/security-baseline/pull/429 https://github.com/ossf/security-baseline/pull/430 https://github.com/ossf/security-baseline/pull/431 https://github.com/ossf/security-baseline/pull/432 https://github.com/ossf/security-baseline/pull/433

We will discuss this at the 1October TAC call at 11am ET. Please have representatives from the project and the Working Group in attendance. Please review https://github.com/ossf/tac/blob/main/process/project-lifecycle.md#submission-process

Has the group been speaking with our Security Tooling WG, and that group endorses this motion? We'll want to see evidence of public meetings and minutes as the project would...

> > I wasn't personally involved with the initial presentation to the WG, so I'm just going with what was passed along to me. As I understand it, Craig was...

We're still waiting on requested changes so that this PR can be merged.

+1 on the blog. Thank you for putting this together.

link to blog draft - https://docs.google.com/document/d/11QuUeNRv5rJPyb41t3UsbbU_HQUnfF9lGqXyd8OX56g/edit

I support this effort to help embiggen sigstore's docs which should help make it more clear and simpler for downstream consumers to evaluate and adopt sigstore.