attestation policy
- CURIE:
gmeow:attestationPolicy - IRI: https://blackcatinformatics.ca/gmeow/attestationPolicy
- Category: property
- Defined by:
gmeow:slices/attestation - Box roles: CBox role, RBox role (What is this?)
The policy under which an attestation was issued — a value vocabulary individual naming the rules or framework the attester followed. Non-functional: competing policy interpretations coexist (Principle 9).
Structure
Property shape: object property; gmeow:Attestation -> gmeow:AttestationPolicy
Practical Pattern
Use gmeow:attestationPolicy from gmeow:Attestation to gmeow:AttestationPolicy when the relationship itself belongs in the native GMEOW graph.
Common Companion Terms
gmeow:Attestation, gmeow:AttestationPolicy
Usage Advice
Use when
- Use to name the rules or framework the attester followed when issuing — a SLSA build level, a credential-issuance policy, an editorial standard — so consumers and the solver can weigh the attestation against its stated policy.
Avoid when
- Avoid for the attestation kind (
gmeow:attestationType) and for evaluating whether the policy was actually met — that policy-evaluation outcome is agmeow:VerificationResultcomputed in the solver layer, not asserted here.
How to use
- Reference a
gmeow:AttestationPolicyindividual; leave policy satisfaction to agmeow:VerificationActivityproducing agmeow:VerificationResult(status policy-failed when unmet), and let competing policy interpretations coexist (Principle 9).
Examples
- ex:provAtt
gmeow:attestationPolicyex:slsaL3.