Skip to content
Navigation Menu
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Copilot app
Direct agents from issue to merge
MCP Registry
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Code Quality
Enforce quality at merge
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
View all resources
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
GitHub Stars
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search
/
Sign in
Sign up
Appearance settings
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
Uh oh!
There was an error while loading.
Please reload this page
.
agentrust-io
/
trace-spec
Public
Notifications
You must be signed in to change notification settings
Fork
25
Star
28
Code
Issues
25
Pull requests
6
Actions
Projects
Security and quality
1
Insights
Additional navigation options
Code
Issues
Pull requests
Actions
Projects
Security and quality
Insights
Actions: agentrust-io/trace-spec
Actions
All workflows
Workflows
CI
CI
CodeQL
CodeQL
Contributor reputation check
Contributor reputation check
Dependabot Updates
Dependabot Updates
Dependency Graph
Dependency Graph
Docs
Docs
OpenSSF Scorecard
OpenSSF Scorecard
pages-build-deployment
pages-build-deployment
PR277 vector fixup
PR277 vector fixup
Publish to PyPI
Publish to PyPI
Show more workflows...
Management
Caches
Deployments
OpenSSF Scorecard
OpenSSF Scorecard
Actions
Loading...
Loading
Sorry, something went wrong.
Uh oh!
There was an error while loading.
Please reload this page
.
will be ignored since log searching is not yet available
Show workflow options
Create status badge
Create status badge
Loading
Uh oh!
There was an error while loading.
Please reload this page
.
scorecard.yml
will be ignored since log searching is not yet available
206 workflow runs
206 workflow runs
Event
Filter by Event
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching events.
Status
Filter by Status
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching statuses.
Branch
Filter by Branch
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching branches.
Actor
Filter by Actor
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching users.
test: sweep every keyword argument of every public function, and clos…
OpenSSF Scorecard
#206:
Commit
6737005
pushed by
imran-siddique
33s
main
main
33s
View workflow file
docs(tutorial): the verifier checks signatures, and needs no clone (#…
OpenSSF Scorecard
#205:
Commit
c04d938
pushed by
imran-siddique
33s
main
main
33s
View workflow file
fix(agt-adapter): appraisal.status is the verifier's, so default it t…
OpenSSF Scorecard
#204:
Commit
1151ad1
pushed by
imran-siddique
44s
main
main
44s
View workflow file
fix(content-marking): establish presence of the required binding fiel…
OpenSSF Scorecard
#203:
Commit
2a82bef
pushed by
imran-siddique
34s
main
main
34s
View workflow file
fix(provenance): validate an explicit issued_at before coercing it (#…
OpenSSF Scorecard
#202:
Commit
0aefa1f
pushed by
imran-siddique
48s
main
main
48s
View workflow file
fix(intent-bridge): compare the required transcript call over canonic…
OpenSSF Scorecard
#201:
Commit
57d5165
pushed by
imran-siddique
52s
main
main
52s
View workflow file
fix(intent-bridge): validate signed decision enum (#319) (#322)
OpenSSF Scorecard
#200:
Commit
10fcba4
pushed by
imran-siddique
45s
main
main
45s
View workflow file
test(vectors): pin which vector carries which discrimination (#327)
OpenSSF Scorecard
#199:
Commit
760cc3f
pushed by
imran-siddique
45s
main
main
45s
View workflow file
docs(sandbox): correct "can't fake hardware" claim in TraceSandboxAda…
OpenSSF Scorecard
#198:
Commit
df0120b
pushed by
imran-siddique
45s
main
main
45s
View workflow file
fix(schema): hold an RSA confirmation key to carrying its key materia…
OpenSSF Scorecard
#197:
Commit
a247244
pushed by
lywinged
36s
main
main
36s
View workflow file
docs(verification): state profile floors as specification choices and…
OpenSSF Scorecard
#196:
Commit
a79ad17
pushed by
lywinged
37s
main
main
37s
View workflow file
docs(roadmap): the anchor format shipped, so stop listing it as the t…
OpenSSF Scorecard
#195:
Commit
b4c4ce9
pushed by
imran-siddique
46s
main
main
46s
View workflow file
docs(rfc): propose runtime evidence, and what a verifier may conclude…
OpenSSF Scorecard
#194:
Commit
e1c727d
pushed by
imran-siddique
47s
main
main
47s
View workflow file
fix(readme): name the API the package actually has, and pin it (#309)
OpenSSF Scorecard
#193:
Commit
6385b50
pushed by
imran-siddique
47s
main
main
47s
View workflow file
Remove FAQ structured data from README (#308)
OpenSSF Scorecard
#192:
Commit
9db7e5f
pushed by
lywinged
37s
main
main
37s
View workflow file
test: add non-JCS signature rejection controls (#306)
OpenSSF Scorecard
#191:
Commit
7d754cd
pushed by
lywinged
43s
main
main
43s
View workflow file
fix untrusted signature type validation (#305)
OpenSSF Scorecard
#190:
Commit
178e148
pushed by
imran-siddique
51s
main
main
51s
View workflow file
chore(deps): bump actions/checkout from 7.0.0 to 7.0.1 (#304)
OpenSSF Scorecard
#189:
Commit
1cb9d6f
pushed by
imran-siddique
36s
main
main
36s
View workflow file
OpenSSF Scorecard
OpenSSF Scorecard
#188:
Scheduled
37s
main
main
37s
View workflow file
fix(content-marking): reject boolean assertion version (#282)
OpenSSF Scorecard
#187:
Commit
9efacc4
pushed by
imran-siddique
37s
main
main
37s
View workflow file
fix(content-marking): validate record.url external references (#284)
OpenSSF Scorecard
#186:
Commit
2781923
pushed by
imran-siddique
32s
main
main
32s
View workflow file
fix(provenance): require textual identity locators (#287)
OpenSSF Scorecard
#185:
Commit
1909c1b
pushed by
imran-siddique
32s
main
main
32s
View workflow file
fix(revocation): validate bundle freshness policy inputs (#288)
OpenSSF Scorecard
#184:
Commit
016764c
pushed by
imran-siddique
42s
main
main
42s
View workflow file
fix(sandbox): validate required textual fields (#290)
OpenSSF Scorecard
#183:
Commit
66205b5
pushed by
imran-siddique
34s
main
main
34s
View workflow file
fix: recognize lywinged as a trace-spec code owner (#303)
OpenSSF Scorecard
#182:
Commit
0d56a46
pushed by
imran-siddique
35s
main
main
35s
View workflow file
Previous
1
2
3
4
5
…
8
9
Next
You can’t perform that action at this time.