slsa-github-generator
slsa-github-generator copied to clipboard
[feature] Compliance test for TRW
trafficstars
As part of the BYOB feature, we want to help TRW authors keep their code reliable and prevent it from breaking. This issue provides a wish list about what features we need for this compliance tests:
- [ ] The TRW pins all the SRW calls (setup-token, delegator call, etc) at the same tag
- [ ] e2e tests that the TRW works. How should this work?