
in-toto Statement With SLSA Provenance v1
An unsigned in-toto Statement carrying a SLSA v1 provenance predicate for a fictional release: build definition, external parameters, resolved dependencies with digests, and run details naming an invented builder. Every package, version, hash and licence is fictional — the tree describes nothing real.
- File
- JSON · Provenance
- Use case
- JSON parsingSchema validation+1· Conversion set






















