I reviewed this document as part of the Security Directorate's ongoing effort to review all IETF documents being processed by the IESG. These comments were written primarily for the benefit of the Security Area Directors. Document authors, document editors, and WG chairs should treat these comments just like any other IETF Last Call comments. Document: draft-ietf-suit-report-15 Reviewer: Russ Housley Review Date: 2025-10-06 IETF LC End Date: 2025-08-11 IESG Telechat date: 2025-10-23 Summary: Has Nits Major Concerns: None Minor Concerns: Section 5: What does the term "well-informed" really mean here? I read the sentence without this term an come away with the same understanding. Can this be dropped? Nits: Section 7: The draft-ietf-suit-manifest document uses "Vendor ID/Class ID". For compatibility, I suggest changing "vendor ID & class ID" to match.