canonical-plan.json inputs.lock sbom.json attestation.dsse approvals-ledger.dsse revocations.json bundle.dsse attestation.dsse.sig redaction-policy.json packs/demo-pack.tgz