Skip to content

Tier

Trust posture for a pack. Five tiers, in descending default capability:

  • Sealed — first-party signed by Stallari (core platform packs).
  • Certified — third-party with a Stallari capability-audit attestation; binaries pinned to a Team ID.
  • Community — third-party notarised plus Stallari catalog-signed; capability set capped at pack-spec definitions.
  • User — self-signed by the user; quarantined on first install.
  • Imported — unsigned or unrecognised; four-action quarantine flow before any code runs.

Tier affects defaults, not ceilings. A community pack that declares a sensitive capability still needs explicit user consent. See Packs and trust for the full trust chain.