-
Notifications
You must be signed in to change notification settings - Fork 0
[Feature] Module Trust Chain & CI Security #187
Copy link
Copy link
Closed
Copy link
Labels
FeatureFeature grouping of related User StoriesFeature grouping of related User Storieschange-proposalProposal for a new changeProposal for a new changeenhancementNew feature or requestNew feature or requestmarketplaceSpecfact Marketplace related topicSpecfact Marketplace related topicopenspecopenspec changeopenspec change
Metadata
Metadata
Assignees
Labels
FeatureFeature grouping of related User StoriesFeature grouping of related User Storieschange-proposalProposal for a new changeProposal for a new changeenhancementNew feature or requestNew feature or requestmarketplaceSpecfact Marketplace related topicSpecfact Marketplace related topicopenspecopenspec changeopenspec change
Type
Projects
Status
Done
Overview
Feature grouping for CI-driven module signing and manifest trust chain enforcement in specfact-cli-modules.
Mirrors specfact-cli#353 — Module Trust Chain & CI Security Feature — on the modules-repo side.
Problem
Module signing currently requires the private key locally, blocking non-interactive development (AI agents, Cursor, headless CI) on feature/dev branches. This feature moves signing to fully automated CI steps triggered by PR approval.
Scope
marketplace-06-ci-module-signing— CI-driven module signing on PR approval (#185)Parent
Epic: #186 — Architecture (module security & CI)
Generated by OpenSpec hierarchy sync.