1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
|
{
lib,
buildPythonPackage,
fetchFromGitHub,
# build-system
hatchling,
# dependencies
asn1crypto,
blake3,
click,
cryptography,
in-toto-attestation,
sigstore,
sigstore-models,
typing-extensions,
# optional-dependencies
opentelemetry-api,
opentelemetry-distro,
opentelemetry-exporter-otlp,
opentelemetry-instrumentation,
opentelemetry-instrumentation-urllib3,
opentelemetry-sdk,
pykcs11,
# tests
pytestCheckHook,
writableTmpDirAsHomeHook,
}:
buildPythonPackage rec {
pname = "model-signing";
version = "1.1.1";
pyproject = true;
src = fetchFromGitHub {
owner = "sigstore";
repo = "model-transparency";
tag = "v${version}";
hash = "sha256-z6PaNVoA5VL5CNYDp7XRXOs9rLfsJggoCu7kyewRm+o=";
};
build-system = [
hatchling
];
dependencies = [
asn1crypto
blake3
click
cryptography
in-toto-attestation
sigstore
sigstore-models
typing-extensions
];
optional-dependencies = {
otel = [
opentelemetry-api
opentelemetry-distro
opentelemetry-exporter-otlp
opentelemetry-instrumentation
opentelemetry-instrumentation-urllib3
opentelemetry-sdk
];
pkcs11 = [
pykcs11
];
};
pythonImportsCheck = [ "model_signing" ];
nativeCheckInputs = [
pykcs11
pytestCheckHook
writableTmpDirAsHomeHook
];
disabledTests = [
# Require internet access
"test_sign_and_verify"
"test_verify_sigstore_v0_3_1"
"test_verify_sigstore_v1_0_0"
# AttributeError: 'NoneType' object has no attribute 'hint'
"test_verify_key_v0_3_1"
"test_verify_key_v1_0_0"
];
meta = {
description = "Supply chain security for ML";
homepage = "https://github.com/sigstore/model-transparency";
changelog = "https://github.com/sigstore/model-transparency/blob/${src.tag}/CHANGELOG.md";
license = lib.licenses.asl20;
maintainers = with lib.maintainers; [ GaetanLepage ];
};
}
|