diff --git a/scenarios/building-dependencies.md b/scenarios/building-dependencies.md index 6db1daf..7b260ca 100644 --- a/scenarios/building-dependencies.md +++ b/scenarios/building-dependencies.md @@ -9,7 +9,7 @@ Simply receiving signed components may not be enough to ensure complete security ## Taking Ownership of the Artifacts You Depend Upon -The first step of securing any supply chain is securing your dependencies, to assure you know what you're building upon. If you built against the foo package on monday, do you know you'll get the same result if you build against the same named reference on Wednesday? +The first step of securing any supply chain is securing your dependencies, to assure you know what you're building upon. If you built against the foo package on Monday, do you know you'll get the same result if you build against the same named reference on Wednesday? See [Consuming Public Content](https://opencontainers.org/posts/blog/2020-10-30-consuming-public-content/) for a reference to this workflow: Consuming Public Content diff --git a/scitt-components.md b/scitt-components.md index 63bd323..dd9061c 100644 --- a/scitt-components.md +++ b/scitt-components.md @@ -1,11 +1,11 @@ # SCITT Components SCITT provides a set of components enabling Supply Chain, Integrity, Transparency and Trust. -(See [What Is SCITT][WHAT_IS_SCITT]) +(see [What Is SCITT][WHAT_IS_SCITT]) But what are the scenarios, projects and products that SCITT enables? -This collection of docs will describe the core components of SCITT, and how it can be enabled and extended to support a breadth of use cases. +This collection of docs will describe the core components of SCITT, and how it can be enabled and extended to support a breadth of use cases, enabling new and existing products and services. -As SCITT is in active design through the [IETF SCITT working group][SCITT_IETF_WG], these documents aim to facilitate various design discussions, based on a set of SCITT primitives and scenarios that benefit from the SCITT primitives. +As SCITT is in active design through the [IETF SCITT working group][SCITT_IETF_WG], these documents aim to facilitate various design discussions, based on a set of SCITT primitives and scenarios. ## Table of Contents