You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
In addition to listing .asc file, the API should also list the provenance for supported repository.
Motivation
Provide an alternative way to verify without using .asc, subjective but the security is as secure if not better than .asc so this can benefit our user as well.
Acknowledgements
I have checked all open and closed feature requests and this is not a duplicate
I have chosen an appropriate title.
All requested information has been provided properly.
The text was updated successfully, but these errors were encountered:
Provenance makes sense if the frontend should be aware of what the API serves has a source code. What if we implement a backend that consumes closed source files from an FTP server?
Feature description
In addition to listing
.asc
file, the API should also list the provenance for supported repository.Motivation
Provide an alternative way to verify without using
.asc
, subjective but the security is as secure if not better than.asc
so this can benefit our user as well.Acknowledgements
The text was updated successfully, but these errors were encountered: