Contributing to Portable Trust Infrastructure
Portable Trust Infrastructure (PTI) is an open technical specification. This project welcomes community participation directly on GitHub — you do not need a lengthy onboarding process to ask questions, report errata, or propose improvements.
The public specification repository is github.com/tumitrust/pti-specification.
Quick start
| You want to… | Do this |
|---|---|
| Fix a typo or clarify wording | Open a PR on the specification repo |
| Ask a question or suggest an idea | Open an issue |
| Propose a protocol or schema change | Open an issue, then submit an RFC pull request |
| Report a security vulnerability | Do not use public issues — see Security disclosure |
Who can contribute
Anyone MAY contribute without organizational membership or a commercial relationship to TumiTrust. Disclose employer affiliation when relevant in issues and pull requests.
What you can contribute
| Contribution | Where | Process |
|---|---|---|
| Errata & clarifications | GitHub PR | Lightweight review |
| Specification / RFC | /pti/rfcs/ | RFC process |
| Conformance tests | Conformance suite | Conformance Program |
| Governance docs | /pti/governance/ | PR + Working Group notice |
Detailed step-by-step for normative changes: Contribution process.
Proposing a specification change (RFC path)
- Open a GitHub issue with the problem statement and compatibility notes.
- Fork the pti-specification repository.
- Add an RFC under
rfcs/using the template, status Draft. - Request review; maintainers advance status per RFC process.
Review expectations
- RFC 2119 keywords in normative text.
- Conformance test IDs when behaviour changes.
- Migration notes for implementers.
Contact
- GitHub (preferred): Issues and pull requests
- Governance: Working Group
- Security: Security disclosure — coordinated disclosure only
- General: Community participation