docs consolidation work
This commit is contained in:
@@ -112,7 +112,7 @@ public interface ISbomIngestionService
|
||||
- `src/Scanner/__Libraries/StellaOps.Scanner.Emit/Composition/CycloneDxComposer.cs`
|
||||
|
||||
**Equivalence Proof:**
|
||||
- ✅ BOM content: CycloneDX 1.6 (upgrading to 1.7)
|
||||
- ✅ BOM content: CycloneDX 1.7
|
||||
- ✅ Subject identification: `ArtifactDigest` (SHA-256)
|
||||
- ✅ Source tracking: `Metadata["source"]`
|
||||
- ✅ Profile support: `SbomIngestionOptions.ScanProfile`
|
||||
@@ -856,7 +856,7 @@ public sealed record RuntimeEvidence
|
||||
**Storage:**
|
||||
- PostgreSQL: `attestor.envelopes` table for DSSE envelopes
|
||||
- PostgreSQL: `scanner.triage_evidence_artifacts` for evidence metadata
|
||||
- S3/MinIO: CAS storage for evidence blobs
|
||||
- RustFS: CAS storage for evidence blobs (S3-compatible; MinIO legacy support available)
|
||||
|
||||
**Equivalence:**
|
||||
- ✅ Hash-addressed storage: SHA-256, BLAKE3
|
||||
|
||||
Reference in New Issue
Block a user