- Add minimum version requirements to deny.toml (ring >= 0.17.5, rustls >= 0.23) - Create build/CHECKSUMS.sha256 for build-time data file integrity - Update build.rs to verify checksums on every build - Add tampering detection tests (th06_checksum_test.rs) - Create nightly supply-chain scan workflow (pdftract-nightly-supply-chain.yaml) - Update audit.toml with advisory exceptions Closes: pdftract-1xf4d Refs: plan lines 877, 883-896, 906-913 |
||
|---|---|---|
| .. | ||
| predefined-cmaps | ||
| agl.json | ||
| aglfn.txt | ||
| CHECKSUMS.sha256 | ||
| fix_std14_weights.py | ||
| font-fingerprints.json | ||
| generate_agl.py | ||
| generate_std14_metrics.py | ||
| glyphlist.txt | ||
| named-encodings.json | ||
| std14-metrics.json | ||
| wordlist-en-20k.txt | ||