Tag: supply chain
3 entries tagged "supply chain" — 3 posts, 0 links.
Posts
Two recent preprints make the practical case for quarantining, pinning, reviewing, and testing third-party agent skills before installation.
Reader outcome: Adopted a repository-pinned, line-by-line intake process for third-party agent skills without overstating early security research.
Why standard code review misses capability escalation in skill manifests, and how to wire a pre-merge conftest policy gate and post-merge SLSA provenance chain that actually work — correcting three common mistakes in the recipes that circulate online.
Reader outcome: Reader can wire a working pre-merge OPA/conftest gate on skill manifests, add a correct post-merge SLSA L2 provenance workflow using the SLSA GitHub Generator reusable workflow (not the nonexistent slsa CLI), and align OTel instrumentation with the GenAI semantic conventions.
A repo-ready operating contract for agent skills that prevents prompt bundles from drifting into unsigned, over-permissioned, unreviewed production dependencies.
Reader outcome: Defined a hardened-by-default skill contract covering version pins, manifest provenance, prompt review, IO tests, least-privilege tools, runtime isolation, observability, rotation, and decommissioning.
All tags