You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Validates project-owned secure-development manifests, hashes, checklists, reviews, risks, closure, and image-impact evidence without granting human approvals or certifications.
Keeps technical validation independent from pilot authorization, project acceptance, product or sandbox release, fleet release, and certification.
Provides matching Bash and PowerShell validators with read-only status behavior and fail-closed exit semantics.
The v0.1.2 baseline passed native Linux, macOS, and Windows package tests and serial RL-SE and GSDB field tests in TinyCalc; this historical evidence is not a new v0.1.3 field-test acceptance.
Testing Checklist
Preset installs successfully via specify preset add
Template resolution works correctly after installation
Documentation is complete and accurate
Tested on at least one real project
Submission Requirements
Valid preset.yml manifest included
Linked README (Documentation URL) explains how to use this preset and includes a valid specify preset add ... command (preferably specify preset add --from <download-url> using the exact download URL)
LICENSE file included
GitHub release created with version tag
Preset ID follows naming conventions (lowercase-with-hyphens)
Scope Boundary
The field-test outcome is ReleaseAccepted for preset v0.1.2 and its evidence contract only. It does not approve TinyCalc findings, human decisions, product or sandbox release, certification, fleet rollout, or selection of Level-2 repositories.
The testing checklist above records the previously submitted v0.1.2 baseline evidence. The earlier ReleaseAccepted outcome remains explicitly scoped to v0.1.2; this update does not assert a new v0.1.3 field-test acceptance or any human approval, certification, or rollout authorization.
Documentation Impact: UpdateRequired. Owner: Thorsten Hindermann. The upstream submission is the canonical source for the submitted version and its download/documentation links; updated for catalog maintainers and preset consumers. Reevaluate on the next release or maintainer feedback.
Preset ID
secure-development-assurance-governance
Preset Name
Secure Development Assurance Governance
Version
0.1.3
Description
Validates project-owned secure-development manifests, hashes, checklists, reviews, risks, closure, and image-impact evidence without granting human approvals or certifications.
Author
Thorsten Hindermann
Repository URL
https://github.com/hindermath/spec-kit-preset-secure-development-assurance-governance
Download URL
https://github.com/hindermath/spec-kit-preset-secure-development-assurance-governance/archive/refs/tags/v0.1.3.zip
Documentation URL
https://github.com/hindermath/spec-kit-preset-secure-development-assurance-governance/blob/v0.1.3/README.md
License
MIT
Required Spec Kit Version
Required Extensions (optional)
None
Templates Provided
secure-development-evidence-contract.md— portable evidence and decision-boundary contractCommands Provided
speckit.secure-development-status.md— read-only inspection of a secure-development evidence directoryspeckit.secure-development-review.md— validation of one named gate with authority-bounded review evidenceNumber of Scripts (optional)
2
Tags
security, governance, assurance, evidence, cross-platform
Key Features
Testing Checklist
specify preset addSubmission Requirements
preset.ymlmanifest includedspecify preset add ...command (preferablyspecify preset add --from <download-url>using the exact download URL)Scope Boundary
The field-test outcome is
ReleaseAcceptedfor preset v0.1.2 and its evidence contract only. It does not approve TinyCalc findings, human decisions, product or sandbox release, certification, fleet rollout, or selection of Level-2 repositories.v0.1.3 Update
Updated this existing submission to the published v0.1.3 pre-release:
https://github.com/hindermath/spec-kit-preset-secure-development-assurance-governance/releases/tag/v0.1.3
The testing checklist above records the previously submitted v0.1.2 baseline evidence. The earlier ReleaseAccepted outcome remains explicitly scoped to v0.1.2; this update does not assert a new v0.1.3 field-test acceptance or any human approval, certification, or rollout authorization.
Documentation Impact: UpdateRequired. Owner: Thorsten Hindermann. The upstream submission is the canonical source for the submitted version and its download/documentation links; updated for catalog maintainers and preset consumers. Reevaluate on the next release or maintainer feedback.