Skip to main content

Module controls

Module controls 

Source

Modules§

branch_history_integrity
branch_protection_enforcement
build_isolation
build_provenance
change_request_size
codeowners_coverage
conventional_title
dependency_completeness
dependency_provenance
dependency_signature
dependency_signer_verified
description_quality
hosted_build_platform
issue_linkage
merge_commit_policy
provenance_authenticity
release_traceability
required_status_checks
review_independence
scoped_change
secret_scanning
security_file_change
security_policy
source_authenticity
stale_review
test_coverage
two_party_review
vulnerability_scanning

Functions§

all_controls
Returns all controls (all SLSA + compliance).
all_slsa_controls
Returns all SLSA controls (Source L4 + Build L3 + Dependencies L4).
compliance_controls
Returns compliance controls (non-SLSA, SOC2/ASPM mapped).
control_description
Returns the SARIF-friendly description for a built-in control ID. Falls back to “Custom control” for unknown IDs.
slsa_controls
Returns all SLSA controls across both tracks up to the given levels.
slsa_controls_for_level
Returns all SLSA controls required for the given track up to the given level.