Provenance Registry Artifact Attestation
ARTIFACT

taao-v2.1.0-artifact1.tar.gz

TAAO / v2.1.0 / taao-v2.1.0-artifact1.tar.gz
Published:

Archive Details

# Download and verify checksum
curl -LO https://artifacts.patterneddesigns.ca/TAAO/v2.1.0/taao-v2.1.0-artifact1.tar.gz
echo "8ccd2ca494ae5bf865609c11a4157e1052e6a732e8ff682f311ac368639a0972  taao-v2.1.0-artifact1.tar.gz" | sha256sum -c

Digests

Content-addressed checksums for verifying artifact integrity.

8ccd2ca494ae5bf865609c11a4157e1052e6a732e8ff682f311ac368639a0972
# Download artifact
curl -O https://artifacts.patterneddesigns.ca/TAAO/v2.1.0/taao-v2.1.0-artifact1.tar.gz

# Verify SHA-256
sha256sum taao-v2.1.0-artifact1.tar.gz
# Expected: 8ccd2ca494ae5bf865609c11a4157e1052e6a732e8ff682f311ac368639a0972

Signatures & Trust

Cryptographic signatures binding this artifact to publisher identities.

AureliaSRS Primary Key
pgp
4096R/ABCD1234
1234 5678 90AB CDEF 1234 5678 90AB CDEF 1234 5678
-----BEGIN PGP SIGNATURE-----
iQIzBAABCAAdFiEEexampleSignatureForTAAOv2.1.0Artifact1
-----END PGP SIGNATURE-----
# Import key
gpg --keyserver keys.openpgp.org --recv-keys 4096R/ABCD1234

# Verify signature
gpg --verify signature.asc artifact.tar.gz

Provenance

Build metadata and supply chain context for this artifact.

GitHub Actions

OS: ubuntu-latest

View Build

Type: github-actions

Workflow: .github/workflows/release.yaml

Commit: c25b412f

Repository

Verification

Verification Passed
Digest Verified:
Signature Verified:
Attestations Verified:
Last Verified:
Verification results are derived and informational. Always perform independent verification using the signatures and digests above.