@simplex
"includes a commitment to run the published code" is a good start!

i'm looking forward to the day when such claims can be backed by cryptographic proofs, independently verifiable by users and third parties. implementing or inspired by https://www.system-transparency.org #systemtransparency

System Transparency | security architecture for bare-metal servers

System Transparency is a security architecture for bare-metal servers.

System Transparency

Managed to make and boot a stimage in qemu on Debian 12.

Not straight forward so here are a few tips
* Have stmgr in $PATH (create with ./build-stmgr if missing)
* apt remove mmdebstrap ( ./contain will be used instead and work with podman)
* apt remove netcat-openbsd (or prefer ncat by default)

https://git.glasklar.is/system-transparency/core/stimages

#systemtransparency

system-transparency / core / stimages · GitLab

Building System Transparency OS images (a.k.a. os-pkgs)

GitLab
♲ @mullvadnet@twitter.com: Open-source firmware is the future! We have ported #coreboot to a modern off-the-shelf server platform! #systemtransparency #privacy @9eSec mullvad.net/blog/2019/8/7/open…