Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Proposal for a SIG for model signing and transparency #10

Closed
mihaimaruseac opened this issue Mar 4, 2024 · 11 comments
Closed

Proposal for a SIG for model signing and transparency #10

mihaimaruseac opened this issue Mar 4, 2024 · 11 comments

Comments

@mihaimaruseac
Copy link
Contributor

Purpose: Create a cryptographic signing specification for artificial intelligence and machine learning models, addressing challenges such as very large models that can be used separately, and the signing of multiple disparate file formats held within a directory. This specification may have wider applicability to signing directories of multiple arbitrary file formats. This specification may later be proposed as a formal standard.

Initial participants:

  • Laurent Simon (Google)
  • Daniel Major (NVidia)
  • Eoin Wickens (HiddenLayer)
@mihaimaruseac
Copy link
Contributor Author

We have voted during the WG meeting and we got 15 "Yes" votes and 0 "No" votes

@TheFoxAtWork
Copy link
Contributor

Is there a link to the deck presented at monday's meeting that could be added to this issue? How can individuals beyond the initial three identified become involved in this?

@mihaimaruseac
Copy link
Contributor Author

I'll ask for the slides.

To get involved, I think we'll do post a calendar + zoom invite to this issue first and notify the working group and then the meetings will be happening periodically. I need to handle a few more processes for the launch of the SIG and then I'll notify here.

@laurentsimon
Copy link

laurentsimon commented Mar 7, 2024

The slides presented during the meeting are available here

Thanks again for the support and looking forward to making strides on the project!

@Ibrahim-Mukherjee
Copy link

Hi, I would be interested in writing documentation for this. Thanks.

@mihaimaruseac
Copy link
Contributor Author

To update, the first meeting of the SIG will be on May 15th at 8 AM Pacific time after which it will repeat every other week.

The event is now added to the OpenSSF calendar.

Hope to see everyone at the SIG meeting

@wenhuizhang
Copy link

  • 1 Wenhui Zhang (Bytedance)

@andife
Copy link

andife commented May 2, 2024

  • 1 Andreas Fehlner (Onnx)

@mihaimaruseac
Copy link
Contributor Author

The first meeting occurred today. The agenda is at https://docs.google.com/document/d/18oAsfhfKJurH-YTUFe520CAZS3lkORX1WnZmBv4Llkc/edit

@Ibrahim-Mukherjee
Copy link

Thanks reviewing now.

@mihaimaruseac
Copy link
Contributor Author

Closing this one since the SIG (soon to be project, see ossf/tac#347) is formed and already had several meetings. There's nothing remaining to be done here

mihaimaruseac added a commit to mihaimaruseac/ossf-tac that referenced this issue Aug 19, 2024
We have a working group that meets for model signing work, as part of
ossf/ai-ml-security#10. Since this working
group helps in developing https://github.com/sigstore/model-transparency
and building standards around it, it needs to be officially a project,
not a WG.

We add the project at a sandbox stage.

Please note that there are 2 repos invovled here:

- https://github.com/sigstore/model-transparency which will be owned by
  Sigstore and is just the implementation work for the library for model
  signing
- a new repository to be created under https://github.com/ossf to
  represent standard documents, as outputs of this project

These two repositories should work in unison to achieve a common goal.

Signed-off-by: Mihai Maruseac <mihaimaruseac@google.com>
lehors pushed a commit to mihaimaruseac/ossf-tac that referenced this issue Aug 21, 2024
We have a working group that meets for model signing work, as part of
ossf/ai-ml-security#10. Since this working
group helps in developing https://github.com/sigstore/model-transparency
and building standards around it, it needs to be officially a project,
not a WG.

We add the project at a sandbox stage.

Please note that there are 2 repos invovled here:

- https://github.com/sigstore/model-transparency which will be owned by
  Sigstore and is just the implementation work for the library for model
  signing
- a new repository to be created under https://github.com/ossf to
  represent standard documents, as outputs of this project

These two repositories should work in unison to achieve a common goal.

Signed-off-by: Mihai Maruseac <mihaimaruseac@google.com>
mihaimaruseac added a commit to mihaimaruseac/ossf-tac that referenced this issue Aug 28, 2024
We have a working group that meets for model signing work, as part of
ossf/ai-ml-security#10. Since this working
group helps in developing https://github.com/sigstore/model-transparency
and building standards around it, it needs to be officially a project,
not a WG.

We add the project at a sandbox stage.

Please note that there are 2 repos invovled here:

- https://github.com/sigstore/model-transparency which will be owned by
  Sigstore and is just the implementation work for the library for model
  signing
- a new repository to be created under https://github.com/ossf to
  represent standard documents, as outputs of this project

These two repositories should work in unison to achieve a common goal.

Signed-off-by: Mihai Maruseac <mihaimaruseac@google.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

6 participants