Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.23.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

1-alpine-dev, 1-alpine3.24-dev, 1.23-alpine-dev, 1.23-alpine3.24-dev, 1.23.0-alpine-dev, 1.23.0-alpine3.24-dev

Index digest:

sha256:5b5d70d5335337e7875b8a600c6c6e9970da68f8c17f04feca86fcec1f628c15

Manifest digest:

sha256:0f3098a5edac5bd71b12b9c4498f4faf94012fe1e1ea73c6510a5ebb15a500f4

Size

33.42 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:f8596a5a1ddc4bb686dad6316887ce02c105ce4c185db66f24d1ef18a0b8732b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:2411cca23019db4e0cd4558d8490666202c945d41d4e85c4c88fa1709d72965f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:f08a34315d8a3ee89b3abfb649a610b4023b3f579827b6fa20442db1a57f6d7d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:ba5d63900441b89f55b0dfc002cf1f3346ee44e2beba49426eb4fd58997559d6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:397816f225fbd6f20f694e288dcccd2f976593106f54fd5ef1c688a3808f3a21
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:4f06b1a280453cfc662da6fc3439575c5e813fde5f297602c62b93d05f65eed7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:24d9850d7f0cd0ef95ecc942902a04ae6ec8f341367ac602fcca813c17631318
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:141e3db73f7e06e7258fcb456941bdc1842749c55a14673b69ee934ae9654fe5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:0b444be45f99aedbecf1bcc6c51910ad70c0ac48f3c0026c264ea1a35545518b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:3654152f344f16e9a74e0e36dbcfcbf4fb2ae0bbf50fe7423ae0762b608acae6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:1f6e4535ded1de28991a38b4a60901b9422b2a233476c89e5483a7677a4f1197
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:643f4d4dac9d8db5af1c6023a5e2f5acaa8966f6b45333eea30b094a2a517850
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:6297ff6bb32bf4f3f6c39eb94c2ddc5db03715138db0c7da0ff94afc975d50d0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:e50e175b1fe344b5654776daa3a9e58d145664831818a866354dc8cbd9f8c7ff