deb_control_files:
- conffiles
- control
- md5sums
deb_fields:
Architecture: all
Depends: python3, python3-requests, python3-securesystemslib, in-toto (>= 1.0.0),
gnupg
Description: |-
apt transport method for in-toto supply chain verification
apt-transport-in-toto provides a custom transport method for apt that fetches
and verifies signed build information from autonomous rebuilders upon package
installation.
.
It uses the supply chain security framework in-toto for its verification
protocol, to i.a. define trust relationships and exchange and verify build
information.
.
apt-transport-in-toto is developed at the Secure Systems Lab of NYU.
Homepage: https://in-toto.io
Installed-Size: '51'
Maintainer: in-toto developers <in-toto-dev@googlegroups.com>
Package: apt-transport-in-toto
Priority: optional
Section: utils
Version: 0.1.1-5
srcpkg_name: apt-transport-in-toto
srcpkg_version: 0.1.1-5