github / github/roadmap

Elevate Attestation as a First-Class Object in Repository UI and Security Overview [Public Preview]

Open
#1,274 0 comments 0 reactions 0 assignees View on GitHub
cloud Enterprise GitHub Advanced Security (GHAS)
Dominant language
No language data
Stars
8.9k
Forks
1.8k
PR merge metrics
No merged PRs in 30d

Description

### Value Prop
You can now easily view and verify attestations directly in your repository’s UI and Security Overview, with clear SLSA level indicators. This makes it simpler for developers, security admins, and compliance leads to assess trust and compliance at a glance, streamlining your security workflows.

### Expected Outcome
By making attestations a first-class part of the repository experience, we aim to reduce friction and increase adoption of secure development practices. This change helps enterprise teams meet SLSA source track requirements and strengthens trust in your software supply chain.

Contributor guide

Open the contributing guide

Research direction

No files, tests, or entry points are identified in the roadmap issue. Use the expected outcome as the starting specification: determine how attestations should appear and be verified in the repository UI and Security Overview, including clear SLSA level indicators. Done means these surfaces support the described attestation and trust/compliance workflow.

Written by the indexing model from the issue text.

Assessment

Domain
security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Quiet
Clarity
Needs clarification
Newbie friendliness
30/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.