{
  "canonicalClaimUrl": "https://xn--mwe.com/sources/src-slsa/#clm-k03-src-slsa-02",
  "claimStatus": "CURRENT TECHNICAL STANDARD",
  "correctionStatus": "CURRENT K03 RECORD",
  "id": "CLM-K03-SRC-SLSA-02",
  "lastReviewed": "2026-08-14",
  "machineRecordUrl": "https://xn--mwe.com/data/claims/clm-k03-src-slsa-02.json",
  "name": "Supply-chain Levels for Software Artifacts (SLSA) Specification v1.2 — Build requirements",
  "ownerAnchor": "clm-k03-src-slsa-02",
  "ownerId": "SRC-SLSA",
  "ownerRoute": "/sources/src-slsa/",
  "ownerType": "source",
  "proposition": "SLSA levels and provenance requirements qualify build evidence; they do not prove that a deployed service is currently operating.",
  "qualification": "Official publication and exact-section support do not transfer authority beyond the source's scope or prove every external fact.",
  "releaseId": "K12-2026-08-16",
  "releaseVersion": "2.1.0",
  "researchCutoff": "2026-08-14",
  "scope": "Bounded proposition supported by the cited section of SLSA v1.2.",
  "slug": "clm-k03-src-slsa-02",
  "sourceIds": [
    "SRC-SLSA"
  ],
  "sourceSections": [
    {
      "section": "Build requirements",
      "sourceId": "SRC-SLSA",
      "supportRelationship": "DIRECT SOURCE-SECTION SUPPORT",
      "supports": "SLSA levels and provenance requirements qualify build evidence; they do not prove that a deployed service is currently operating.",
      "url": "https://slsa.dev/spec/v1.2/build-requirements"
    }
  ],
  "type": "ClaimRecord"
}
