
This artifact enables evaluating Lily, a new approach and tool for preventing backdoor injections in the CI and release vetting pipelines. More precisely, this artifact makes it possible to reproduce the evaluation results reported in our ASE'26 paper about Lily, as they are detailed in tables 3–6 of this paper. See the following files (as per the Call for Artifacts): README.md REQUIREMENTS.md STATUS.md LICENSE and LICENSE.gpl preprint.pdf abstract.pdf Dockerfile A copy of the Docker image for the artifact can be found in `lily-ase26-artifact_docker-image_0-2-5.tar`. Important: for Apple Silicon users, use `lily-ase26-artifact_apple-silicon_docker-image_0-2-5.tar` instead. A full copy of the 0.2.5 release for the artifact can be found (in compressed form) in `lily-ase26-artifact_0-2-5.tar.xz`.
