Skip to content

Support SCITT (Supply Chain Integrity) receipts #34

@jagmarques

Description

@jagmarques

SCITT (Supply Chain Integrity, Transparency, and Trust) is an IETF standard for transparent claims about software artifacts. Agent audit trails are a natural fit.

This would allow asqav signed action records to be submitted to a SCITT transparency log, providing independent third-party verification that the audit trail existed at a specific time.

References:

Would need:

  • SCITT receipt format adapter
  • Option to submit action hashes to a SCITT transparency log
  • Verification of SCITT receipts alongside ML-DSA signatures

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions