Provenance Registry Artifact Attestation
ARTIFACT

taao-v2.1.0-artifact2.tar.gz

TAAO / v2.1.0 / taao-v2.1.0-artifact2.tar.gz
Published:

Archive Details

# Download and verify checksum
curl -LO https://artifacts.patterneddesigns.ca/TAAO/v2.1.0/taao-v2.1.0-artifact2.tar.gz
echo "fcce311097885f9ec01cd5f217643ae27d20c2881252956d6f8b639f14be5b6f  taao-v2.1.0-artifact2.tar.gz" | sha256sum -c

Digests

Content-addressed checksums for verifying artifact integrity.

fcce311097885f9ec01cd5f217643ae27d20c2881252956d6f8b639f14be5b6f
# Download artifact
curl -O https://artifacts.patterneddesigns.ca/TAAO/v2.1.0/taao-v2.1.0-artifact2.tar.gz

# Verify SHA-256
sha256sum taao-v2.1.0-artifact2.tar.gz
# Expected: fcce311097885f9ec01cd5f217643ae27d20c2881252956d6f8b639f14be5b6f

Signatures & Trust

Cryptographic signatures binding this artifact to publisher identities.

AureliaSRS Primary Key
pgp
4096R/ABCD1234
1234 5678 90AB CDEF 1234 5678 90AB CDEF 1234 5678
-----BEGIN PGP SIGNATURE-----
iQIzBAABCAAdFiEEexampleSignatureForTAAOv2.1.0Artifact2
-----END PGP SIGNATURE-----
# Import key
gpg --keyserver keys.openpgp.org --recv-keys 4096R/ABCD1234

# Verify signature
gpg --verify signature.asc artifact.tar.gz

Provenance

Build metadata and supply chain context for this artifact.

GitHub Actions

OS: ubuntu-latest

View Build

Type: github-actions

Workflow: .github/workflows/release.yaml

Commit: c25b412f

Repository

Verification

Verification Passed
Digest Verified:
Signature Verified:
Attestations Verified:
Last Verified:
Verification results are derived and informational. Always perform independent verification using the signatures and digests above.