Trustable Compliance Report
Item status guide
Each item in a Trustable Graph is scored with a number between 0 and 1. The score represents aggregated organizational confidence in a given Statement, with larger numbers corresponding to higher confidence. Scores in the report are indicated by both a numerical score and the colormap below:
1.00 
 0.00
The status of an item and its links also affect the score.
Unreviewed items are indicated by a cross in the status column. The score of unreviewed items is always set to zero.
Suspect links are indicated by a cross in the status column. The contribution to the score of a parent item by a suspiciously linked child is always zero, regardless of the child's own score.
Compliance for TA
| Item | Summary | Score | Score Origin | Status |
|---|---|---|---|---|
| TA-SUPPLY_CHAIN | All sources for XYZ and tools are mirrored in our controlled environment | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-INPUTS | All inputs to XYZ are assessed, to identify potential risks and issues | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-TESTS | All tests for XYZ, and its build and test environments, are constructed from controlled/mirrored sources and are reproducible, with any exceptions documented | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-RELEASES | Construction of XYZ releases is fully repeatable and the results are fully reproducible, with any exceptions documented and justified. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-ITERATIONS | All constructed iterations of XYZ include source code, build and usage instructions, tests, results, and attestations. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-FIXES | Known bugs or misbehaviours are analysed and triaged, and critical fixes or mitigations are implemented or applied. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-UPDATES | XYZ components, configurations and tools are updated under specified change and configuration management controls. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-BEHAVIOURS | Expected or required behaviours for XYZ are identified, specified, verified and validated based on analysis. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-MISBEHAVIOURS | Prohibited misbehaviours for XYZ are identified, and mitigations are specified, verified and validated based on analysis. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-CONSTRAINTS | Constraints on adaptation and deployment of XYZ are specified. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-INDICATORS | Advance warning indicators for misbehaviours are identified, and monitoring mechanisms are specified, verified and validated based on analysis. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-ANALYSIS | Collected test and monitoring data for XYZ is analysed using verified methods to validate expected behaviours and identify new misbehaviours. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-DATA | Test and monitoring data from development and production are appropriately collected and retained. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-VALIDATION | Tests exercise both stressed and representative conditions, validating behaviour through systematic, scheduled repetition. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-METHODOLOGIES | Manual methodologies applied for XYZ by contributors, and their results, are managed according to specified objectives. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TA-CONFIDENCE | Confidence in XYZ is measured based on results of analysis | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
Compliance for TRUSTABLE
| Item | Summary | Score | Score Origin | Status |
|---|---|---|---|---|
| TRUSTABLE-SOFTWARE | This release of XYZ is Trustable. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
Compliance for TT
| Item | Summary | Score | Score Origin | Status |
|---|---|---|---|---|
| TT-PROVENANCE | All inputs (and attestations for claims) for XYZ are provided with known provenance. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TT-CONSTRUCTION | Tools are provided to build XYZ from trusted sources (also provided) with full reproducibility. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TT-CHANGES | XYZ is actively maintained, with regular updates to dependencies, and changes are verified to prevent regressions. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TT-EXPECTATIONS | Documentation is provided, specifying what XYZ is expected to do, and what it must not do, and how this is verified. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TT-RESULTS | Evidence is provided to demonstrate that XYZ does what it is supposed to do, and does not do what it must not do. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
| TT-CONFIDENCE | Confidence in XYZ is achieved by measuring and analysing behaviour and evidence over time. | 0.00 | Missing | ✔ Item Reviewed ✔ All Children Linked |
Generated for: TSF
- Repository root: /builds/eclipse/tsf/tsf
- Commit SHA: 9e93651f6a8bfe22ba8c741080d134e5cf06ba25
- Commit date/time: 2026-04-09 15:30:25+00:00 UTC
- Commit tag: 0.2.0-5-g9e93651