Skip to main content

S3 checkpoint store for OpenWright — Object-Lock/WORM chain-of-custody.

Project description

openwright-s3

An S3 checkpoint store with Object-Lock / WORM retention for OpenWright — tamper-proof chain-of-custody for signed tree heads.

pip install openwright openwright-s3
openwright collector --key key.pem --checkpoint-interval 300 \
  --checkpoint-store "s3://my-bucket/checkpoints?lock=COMPLIANCE&days=180"

lock ∈ {COMPLIANCE, GOVERNANCE}; days is the retention window. Under COMPLIANCE, once a checkpoint is written it cannot be overwritten or deleted until retention expires — enforced by S3 from the object-lock metadata the store sets, not by a comment. The bucket must have Object Lock enabled at creation (S3CheckpointStore.create_locked_bucket). Wraps core's S3CheckpointStore; no crypto is reimplemented here.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

openwright_s3-0.4.0.tar.gz (2.6 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

openwright_s3-0.4.0-py3-none-any.whl (2.7 kB view details)

Uploaded Python 3

File details

Details for the file openwright_s3-0.4.0.tar.gz.

File metadata

  • Download URL: openwright_s3-0.4.0.tar.gz
  • Upload date:
  • Size: 2.6 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for openwright_s3-0.4.0.tar.gz
Algorithm Hash digest
SHA256 10354243e575bee1aea98b2f9db87571a4e82ecd3ef94c04c161aa493ff52d0f
MD5 c659293ff2ac72088aa30d682031094b
BLAKE2b-256 0af179c69ffae9e8e338cf893703342b03228b89e54bd3c47d3846fa353e1ad9

See more details on using hashes here.

Provenance

The following attestation bundles were made for openwright_s3-0.4.0.tar.gz:

Publisher: release.yml on allthingsN/openwright-connectors

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file openwright_s3-0.4.0-py3-none-any.whl.

File metadata

  • Download URL: openwright_s3-0.4.0-py3-none-any.whl
  • Upload date:
  • Size: 2.7 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for openwright_s3-0.4.0-py3-none-any.whl
Algorithm Hash digest
SHA256 f68b0422fff0f0bb5fbb3fcbad656773aadd311da1133cd4d48907f80a09ca0f
MD5 d0d1cf754c9c9ea13a9e50b076025f28
BLAKE2b-256 60afbea915477172944e9881768000efc7452cf2f5ece19358062101bb9aa9f4

See more details on using hashes here.

Provenance

The following attestation bundles were made for openwright_s3-0.4.0-py3-none-any.whl:

Publisher: release.yml on allthingsN/openwright-connectors

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page