DRS / template

Dependency-Provenance.md

Record where dependencies came from and how they were pinned.

Useful when

My releases are hard to reproduce.

Choose your situation

What you should change

Replace dependencies, versions, origins and integrity evidence.

Use only the parts that help. These are starting points, not rigid requirements.

View resource

Related resources

MIT license — copy, modify and redistribute; retain the notice.

Reviewed 2026-10-02. Canonical relative source: DRS/templates/Dependency-Provenance.md. Examples are illustrative. A template or validator does not establish release readiness.

Snapshot SHA-256ed5a0089d07c88104e60ab78c828b468dd1f37e0e9ab29219264e04be58e50c1