Provenance Registry Artifact Attestation
ARTIFACT

taao-v2.0.0-artifact2.tar.gz

TAAO / v2.0.0 / taao-v2.0.0-artifact2.tar.gz
Published:

Archive Details

# Download and verify checksum
curl -LO https://artifacts.patterneddesigns.ca/TAAO/v2.0.0/taao-v2.0.0-artifact2.tar.gz
echo "785f9a2a7accc3021eb03eff30d0514b87744eccdc6300f3e6ab6cb59598e20f  taao-v2.0.0-artifact2.tar.gz" | sha256sum -c

Digests

Content-addressed checksums for verifying artifact integrity.

785f9a2a7accc3021eb03eff30d0514b87744eccdc6300f3e6ab6cb59598e20f
# Download artifact
curl -O https://artifacts.patterneddesigns.ca/TAAO/v2.0.0/taao-v2.0.0-artifact2.tar.gz

# Verify SHA-256
sha256sum taao-v2.0.0-artifact2.tar.gz
# Expected: 785f9a2a7accc3021eb03eff30d0514b87744eccdc6300f3e6ab6cb59598e20f

Signatures & Trust

Cryptographic signatures binding this artifact to publisher identities.

AureliaSRS Primary Key
pgp
4096R/ABCD1234
1234 5678 90AB CDEF 1234 5678 90AB CDEF 1234 5678
-----BEGIN PGP SIGNATURE-----
iQIzBAABCAAdFiEEexampleSignatureForTAAOv2.0.0Artifact2
-----END PGP SIGNATURE-----
# Import key
gpg --keyserver keys.openpgp.org --recv-keys 4096R/ABCD1234

# Verify signature
gpg --verify signature.asc artifact.tar.gz

Provenance

Build metadata and supply chain context for this artifact.

GitHub Actions

OS: ubuntu-latest

View Build

Type: github-actions

Workflow: .github/workflows/release.yaml

Commit: 0d212cea

Repository

Verification

Verification Passed
Digest Verified:
Signature Verified:
Attestations Verified:
Last Verified:
Verification results are derived and informational. Always perform independent verification using the signatures and digests above.