Feature 044 (#453) registers every reproducibility step type that decides from text or file-presence signals as FAIL-only. A PASS from those signals is evidence only.
repro_hermetic_build also verifies Witness attestations. A verified attestation that records no network access during the build is a cryptographic observation, not a text signal. Because it sits inside the same step type, it can no longer conclude PASS for RE-02.01 either.
Proposal:
- Split Witness verification into its own step type with a
{pass, fail} ceiling. It passes on a verified attestation with no recorded network access, fails on a verified attestation that records network access, and is ERROR when the attestation can't be verified.
- Add it as an RE-02.01 step ahead of
repro_hermetic_build.
- Back it with corpus cases.
The signal-based checks in repro_hermetic_build stay FAIL-only.
Related: #453, #227. Paths change if #532 (rename to darnit-amber) lands first.
(Drafted with Claude Code.)
Feature 044 (#453) registers every reproducibility step type that decides from text or file-presence signals as FAIL-only. A PASS from those signals is evidence only.
repro_hermetic_buildalso verifies Witness attestations. A verified attestation that records no network access during the build is a cryptographic observation, not a text signal. Because it sits inside the same step type, it can no longer conclude PASS for RE-02.01 either.Proposal:
{pass, fail}ceiling. It passes on a verified attestation with no recorded network access, fails on a verified attestation that records network access, and is ERROR when the attestation can't be verified.repro_hermetic_build.The signal-based checks in
repro_hermetic_buildstay FAIL-only.Related: #453, #227. Paths change if #532 (rename to darnit-amber) lands first.
(Drafted with Claude Code.)