Skip to content
Signatif

Requirements

The registry of requirements classes

Signatif specifies requirements as addressed classes — /req identifiers with matching /conf conformance classes — so that “conforming implementation” is a testable claim, not an adjective.

Requirements classes
14
Requirements
118
Conformance classes
14
Conformance tests
118
ClauseRequirements classIdentifierReq.Conformance classTests
6Architecture and trust model/req/architecture11/conf/architecture11
6Artifact format and signature binding/req/artifact-format19/conf/artifact-format19
6Cryptographic algorithms/req/algorithms7/conf/algorithms7
6Threshold signing and federated trust authorities/req/threshold-signing12/conf/threshold-signing12
6Trust chain and authorization scope governance/req/scope8/conf/scope8
6Revocation and artifact binding/req/revocation7/conf/revocation7
6Transparency and multi-log attestation/req/transparency9/conf/transparency8
6Verification pipeline/req/verification8/conf/verification8
6Key lifecycle/req/key-lifecycle6/conf/key-lifecycle6
6Delivery and discovery/req/delivery6/conf/delivery6
6Ceremony records/req/ceremony5/conf/ceremony5
6Deployment manifest/req/manifest7/conf/manifest7
6Governance and mutual recognition/req/governance5/conf/governance5
6Algorithm agility/req/algorithm-agility4/conf/algorithm-agility4
Totals113113

How to read the registry

Requirements classes

Each /req class groups requirements on one subject, identified by stable identifiers such as/req/verification/coverage-report. Requirements are stated as testable characteristics — never as products or vendor names.

Conformance classes

Each class pairs with a /conf class of abstract tests, one per requirement, plus implementation roles — basic and full verifiers, issuing and root authorities, transparency operators, mirrors, and device signers — so an implementation claims exactly what it implements.

Machine-readable source

The registry is generated from YAML requirement sources in the standard’s repository, rendered into the document and the abstract test suite — one source of truth for document, tests, and tooling.

YAML sources on GitHub

How a scheme claims these classes:building a scheme.