Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x

CIS
linux/amd64
alpine 3.24
Tags:

1.22-alpine, 1.22-alpine3.24, 1.22.1-alpine, 1.22.1-alpine3.24

Index digest:

sha256:a71c5d6913b0a48c16bfe70518db280d5fe519d162e3ad69e60b855893505ba1

Manifest digest:

sha256:4dda3cc1dd68d097d8beae59c8240f2d29e2992618583231f0c4e13e26198483

Size

14.44 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
0
1
0

Support

Ends Nov 2026

Request ELS⁠

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:8189b1a69e826ad840f30cdc08498141abed82e1ac4fa3f6b64a576ecc56ad4e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:8694f829c96ce89c76820e1bea21df6fd05ebf364a16383409a0e3009b4ea04d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:e6bda11c031001e45ce387edd4ed1e39f80bbeb4e907acd6e869aca637aad41d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:5296819455992efff5a6d0984c88d04ced6e10d048bd3e1026778e9f4f7dde7c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:90ad216b70ef44cc4b7cfdba223fbf722bf89f8e307cc507100171bbeb3832dd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:326926ed65683a42cf313c82d0a87c45aa9302f599d95c5d9ab254020e292b84
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:edc5b3dc7d51033bc8796b843c87cd2adbbdad76bed55e5f91f04d86b50ad86d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:9337cb6c7e97591178f15b7b06333756e20e451918883821a759ccc44f26a47f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:2f773a31fe59f43bf54cf8d5c4dcba6329e0288c4af0a73369518d27a2633fda
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:bc3f8cbd670118baaad093cd2542b154a1181f5c8d993d45784d60fc39bfd7ad
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:585ecf1d6bb50e39762056eb217db9bb39f90a2c52b732bcce0a2e89e42bbd36
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:5d377595e69ff8c81a5b7cfbd46839a8fddf42537f3358240551ef4ff5bacc89
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:2bf7cfc3e650fac15b3c6528f70497b289ff66c835885d8a3985d555dce6c27f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:97e03dda2c97f362c83b4bfaff899278e8ddde71751bbc4b0fe2f007c7c53841