Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1.22-alpine-fips-dev, 1.22-alpine3.24-fips-dev, 1.22.1-alpine-fips-dev, 1.22.1-alpine3.24-fips-dev

Index digest:

sha256:6b0c263cbf9590bcbbb15486fdce9177194fb810bfeb38d98ec488c8a0830d27

Manifest digest:

sha256:f5f7717a985a7400d1fea78c65fa070d2010eff7b9ac39ee6a69464d82529f36

Size

34.20 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
1
0

Support

Ends Nov 2026

Request ELS⁠

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:f02e5a874ca4e15ec9747021ce7719e1228464fe6df0f99b5a4e06c04ea604db
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:cef87ed91adb9b84bc497984d3c5d5ca1e88b4fdef65baf6ff1a03268369fac4
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:836a05532d98b53e7a7e3ba5114200c47848f99fe666aeb082ef7ba0fca0a1ae
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:ba12b134b46433f462e8904a7361504fae5ebf009c3a30377a1181cced953a38
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:b666282e079928adab6a59694ee228f7e7d5d0c4e0d5987535f4ee59c79b547b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:c4109435898866a5d64e348951bd799e0bf39fcf802bf4eea9abc23cae7caa15
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:1623c9d12f71130c8b5e0674b8e664934473f127c00df3a68220598a7f146dde
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:4497f36cd817825bfc851752628fc16fbd8a0942be82ebe00d498557f6a930e9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:33adcc528e8a7e9496b9c6ffc74b3247bb4cba26a89f489ed0cb19e0aac8b755
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:bbca0ae0ab9481dcfb45b046b5c3a9063f7d3a1dbb8459e706e402badb67e83d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:b9b8e5382e1f87b7f3fdac8d5dc28a20800eb4a77a07f551eee6c8a9604603b1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:638fe8d779e0c3d9e933d3611d82590acbe85e6164cadd46c72ba6c4195ab3ef
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:b9c61c3907beb6086657c4309ff5a7209a53dcd7e96de28ee940ca80884cde75
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:7f4014483930203baeed1b82b07b6b30deed6cc81f9ba542d872a8a301674e25
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:704da330938997d4b4bbb1f17ac6b5880477c77760fb65e5aa8519b7c37cb4af
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:7c5aa3b59e768f0f7ad1f686eaaca195c055de1153d7015d1dbc47ed6b135ba5