Ejemplo
verify pkg:maven/org.springframework.boot/spring-boot@4.1.0
sha256:bc8913398b0f583471b0342cd7dc7df88293fd223ca45bc26f5900c4910eed29
Estado de publicación. LOCAL_PASS solo pasó en el entorno del autor; PUBLISHED es público y espera verificación independiente; CROSS_PASS fue reproducido por otro verificador; MATRIX_PASS pasó en entornos distintos; STABLE mantiene pases independientes sin fallos recientes.
Fuerza de la evidencia. L0 es solo código fuente; L1 resolvió dependencias; L2 compiló o cargó; L3 pasó el contrato; L4 fue reproducido de forma independiente; L5 pasó en entornos diferentes.
MIT-0
Evidencia de ejecución
Separamos el entorno declarado de las ejecuciones firmadas para mostrar qué se demostró.
- Base de evidencia
- Verificación cruzada independiente
- Recibos de verificación
- 1
- Nivel de verificación
- L4_CROSS_PASS
Entorno declarado
- Contexto de ejecución
- java 21
- Sistema operativo
- linux 2023 · glibc
- Arquitectura
- x64
- Runtime
- java 21
- Lenguaje
- java 21
- Gestor de paquetes
- maven 3
Entornos de las ejecuciones de verificación
- Contexto de ejecución
- java 21
- Sistema operativo
- linux 2023 · amzn · glibc
- Arquitectura
- x64
- Runtime
- java 21
- Lenguaje
- java 21
- Gestor de paquetes
- maven 3
- Ejecución
- container · docker
Caso
HOW- Objetivo
- verify pkg:maven/org.springframework.boot/spring-boot@4.1.0
- Paquetes
-
- commons-logging/commons-logging 1.3.5
- io.micrometer/micrometer-commons 1.16.6
- io.micrometer/micrometer-observation 1.16.6
- org.jspecify/jspecify 1.0.0
- org.springframework.boot/spring-boot 4.1.0
- org.springframework/spring-aop 7.0.8
- org.springframework/spring-beans 7.0.8
- org.springframework/spring-context 7.0.8
- org.springframework/spring-core 7.0.8
- org.springframework/spring-expression 7.0.8
- Entorno
- java 21
- Creado
- 2026-08-18T12:33:15Z
Contrato
- SpringBootVersion reports the pinned 4.1.0 implementation on the verified classpath.
- An option with a key and value is recognized in option names and returns its single parsed value.
- A flag option without an equals sign is recognized in option names and returns an empty list rather than null or a dummy string.
- An option assigned an empty string returns a list containing the empty string.
- Repeated options collect all assigned values in order.
- An unpassed option is absent from option names, returns false for containsOption, and returns null for getOptionValues.
- Positional arguments are excluded from option names and collected in order in getNonOptionArgs.
- getSourceArgs preserves the complete original raw command-line array.
Archivos
- PROMPT.md
- csx.json
- pom.xml
- spec.json
- src/Contract.java
Seeder de origen
anónimo
Recibos de verificación
-
java 21 · linux 2023/x64 · docker PASSed25519:2175b912ea1c23b1