- Introduced a new VEX compact fixture for testing purposes. - Implemented `verify_export.py` script to validate Findings Ledger exports, ensuring deterministic ordering and applying redaction manifests. - Added a lightweight stub `HarnessRunner` for unit tests to validate ledger hashing expectations. - Documented tasks related to the Mirror Creator. - Created models for entropy signals and implemented the `EntropyPenaltyCalculator` to compute penalties based on scanner outputs. - Developed unit tests for `EntropyPenaltyCalculator` to ensure correct penalty calculations and handling of edge cases. - Added tests for symbol ID normalization in the reachability scanner. - Enhanced console status service with comprehensive unit tests for connection handling and error recovery. - Included Cosign tool version 2.6.0 with checksums for various platforms.
54 lines
2.2 KiB
JSON
54 lines
2.2 KiB
JSON
{
|
|
"generatedAt": "2025-12-02T00:00:00Z",
|
|
"policyHash": "sha256:policy-v1",
|
|
"datasets": {
|
|
"findings-canonical.ndjson": {
|
|
"path": "src/Findings/StellaOps.Findings.Ledger/fixtures/golden/findings-canonical.ndjson",
|
|
"schema": "export.v1.canonical",
|
|
"records": 2,
|
|
"filtersHash": "a81d6c6d2bcf9c0e7cbb1fcd292e4b7cc21f6d5c4e3f2b1a0c9d8e7f6c5b4a3e",
|
|
"sha256": "cd270235484748f2f4c871e9d574796e6f61b48df9cc65e009dab4ba0769dfa4"
|
|
},
|
|
"vex-compact.ndjson": {
|
|
"path": "src/Findings/StellaOps.Findings.Ledger/fixtures/golden/vex-compact.ndjson",
|
|
"schema": "export.v1.compact",
|
|
"records": 1,
|
|
"filtersHash": "b5c6d7e8f9a0b1c2d3e4f50617283940aa5544332211ffeeccbb998877665544",
|
|
"sha256": "e786a12b4ee08776df73f7f2a97907280b5f8bb76cc7a901e2a680d3fe69e85e"
|
|
},
|
|
"advisories-canonical.ndjson": {
|
|
"path": "src/Findings/StellaOps.Findings.Ledger/fixtures/golden/advisories-canonical.ndjson",
|
|
"schema": "export.v1.canonical",
|
|
"records": 1,
|
|
"filtersHash": "c6d7e8f9a0b1c2d3e4f50617283940aa5544332211ffeeccbb99887766554433",
|
|
"sha256": "6d5a2d522179b616c112c255c7dd06b3434ae0a4992009d25ea82f50144425ab"
|
|
},
|
|
"sboms-compact.ndjson": {
|
|
"path": "src/Findings/StellaOps.Findings.Ledger/fixtures/golden/sboms-compact.ndjson",
|
|
"schema": "export.v1.compact",
|
|
"records": 1,
|
|
"filtersHash": "d7e8f9a0b1c2d3e4f50617283940aa5544332211ffeeccbb9988776655443322",
|
|
"sha256": "c89be7fcc511c4ef5a4a291c45061da1a7f4592506150e5b9bce92ba2bb5bbe2"
|
|
}
|
|
},
|
|
"manifests": {
|
|
"redaction-manifest.yaml": {
|
|
"path": "docs/modules/findings-ledger/redaction-manifest.yaml",
|
|
"schema": "redaction.v1",
|
|
"sha256": "7c2f437a47c6514ad4688072b8b5e33b2e0cd0f9f289f15b49bf2f7def54a730"
|
|
},
|
|
"redaction-manifest.json": {
|
|
"path": "docs/modules/findings-ledger/redaction-manifest.json",
|
|
"schema": "redaction.v1",
|
|
"sha256": "6965ea311f65482e6f51da0fd26cae1995997fcd456cea6dac84ab7b3354990a"
|
|
}
|
|
},
|
|
"replay": {
|
|
"sample": {
|
|
"path": "docs/modules/findings-ledger/replay-checksums.sample.json",
|
|
"schema": "ledger.harness.v1",
|
|
"note": "replace with harness-produced checksums before enforcement"
|
|
}
|
|
}
|
|
}
|