Manual Attestations - mitre/heimdall2 GitHub Wiki

(WIP)

Creating a manual attestation file

JSON file example

YAML file example

Creating based on a list of inputs

Adding attestations to your pipeline

You can add manual attestations to your pipelines results by including an attestations file in your repository and using the attest apply command from the SAF CLI. Below is just one example of a possible pipeline workflow.

GithubActionsWorkflowAttestation