How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

in-toto Attestation Framework

Radar: Initial Apache-2.0

The specification and schemas for the attestation format — the statement-and-predicate envelope SLSA provenance and most supply-chain claims are carried in.

in-toto

Specifications it implements

What this tool does to each specification, in the role vocabulary. Follow a standard through to standards.apievangelist.com for what it actually specifies.

StandardRoleWhat that means
in-toto authors
Using this from an agent
Interfaces
library
Consumes
in-toto-attestation
Emits
json
Runtime
Runs offline Deterministic Read-only No credentials

Where it applies

Jobs this tool actually does, and the surface each one is exercised on.

Read the schema before emitting attestations, so they are actually consumable by other tools.
coding-agent
Website
https://github.com/in-toto/attestation
Repository
https://github.com/in-toto/attestation
License
Apache-2.0 — read from the repository's LICENSE file, verified 2026-08-11
Stars
363 · last commit 2026-08-04
Reading this as an agent? Don't scrape the page — this entry is published as structured data at /tools.json, against the tool.schema.json schema, using the roles.json vocabulary. Start at /llms.txt.
arrow_back All tools by adoption