Repository & Source Issues
Repository and source workflows depend on a clear input boundary.
- repository or source availability
- selected revision or version
- expected files
- supported file types
- archive structure
- source identifiers
- access permissions
Source boundary
Section titled “Source boundary”Make sure the material used to produce the artifact can be distinguished from unrelated project files.
Version mismatch
Section titled “Version mismatch”If evidence references one repository state while the artifact was produced from another, treat the mismatch explicitly rather than assuming equivalence.