https://theupdateframework.io
https://github.com/theupdateframework/specification/blob/master/tuf-spec.md