Registre de confiance FR

Politiques actives

Production Release Signing Policy v2
signing-requirements Actif

Defines the trusted key set, algorithm requirements, and rotation schedule for all production release artifact signing.

Clés de confiance

ed25519-2026-primary min: high
ed25519-2025-secondary min: high
cloud-kms-2025-container min: high
keyless-gitea-actions min: medium
ed25519-2025-emergency-replacement min: high
Rotation: every 365 jours · 44-jours de chevauchement
En vigueur janv. 15, 2025 · Révision prévue janv. 15, 2027 · Approuvé par jdoe

Politiques remplacées

Emergency Key Rotation Policy v1
Inactif

Response procedure for immediate key revocation and replacement on compromise or suspicious activity.

Production Release Signing Policy v1 (Superseded)
signing-requirements Inactif

Original signing policy. Superseded by v2 in January 2025.

En vigueur janv. 1, 2024