Synopsis
TYPE-NAME must start with a letter or number, and only contain letters, numbers, ., -, _, and ~.
--schema is a path to a file containing a JSON schema which will be used to validate attestations made using this type.The schema is used to specify the structure of the attestation data, e.g. any fields that are required or the expected type of the data. See an example schema file here.
--jq defines an evaluation rule, given in jq-format, for this attestation type. The flag can be repeated in order to add additional rules.These rules specify acceptable values for attestation data, e.g.
.age >= 21 or .failing_tests == 0.When a custom attestation is reported, the provided data is evaluated according to the rules defined in its attestation-type. All rules must return
true for the evaluation to pass and the attestation to be determined compliant.
Flags
Flags inherited from parent commands
Live Examples in different CI systems
- GitHub
View an example of the
kosli create attestation-type command in GitHub.In this YAML fileExamples Use Cases
These examples all assume that the flags--api-token, --org, --host, (and --flow, --trail when required), are set/provided.
create/update a custom attestation type with no schema no evaluation rules
create/update a custom attestation type with no schema no evaluation rules
create/update a custom attestation type with schema and jq evaluation rules
create/update a custom attestation type with schema and jq evaluation rules