Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.23.x

CIS
linux/amd64
alpine 3.24
Tags:

1-alpine, 1-alpine3.24, 1.23-alpine, 1.23-alpine3.24, 1.23.0-alpine, 1.23.0-alpine3.24

Index digest:

sha256:e34838107468fa2437774c5e1706a70d18639dec25257fcc51b3967d5214b4c0

Manifest digest:

sha256:340cde75ad0c2b867c89d6bf2c33b1a00f946c238b3ad632bac08bd8ef69dff8

Size

14.47 MB

Last pushed

11 days ago

Vulnerabilities

0
0
0
1
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:d7b4f460ef0271bf71b0fdda5b8936ecb17eb39c93c96f3364122404cacd604b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:41b40d2e6dd29af2841bc7d85557e3081ef10b2da4390b047825543b5e8a6de0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:deae1b903d84c60a9746a9492087fb580c320e38d5b34a2885b1a853ccb35393
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:684555ca511194f76d699c51f2ab8a0958b69742b6e55dea9fdf2ee4f88b5aa6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:a4ad508a1241a123ffeb03bce97d1537c0e5c859f71df1e3d08c59c1ee2ca87c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:d1f42667516afc4eca4f974254e86ed3fb14f85a7c062cbc9be654bf6ceb4008
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:24a4665235a14c2cd96e0c200504e546d18febb52690f2310b40a7ed7f37b16e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:b00c0705c1f014372c6682f7e7ef8a2d9a476a4abe76e9691b5346b366549dc9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:6624f169a0c3f2112a294ab216b323938e4080f29784a132384e06410eeea00d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:93d5e4ea09755913dcd5ea7a01f98abd95eab3b6ca816b0901cb9c1c385f3a62
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:9de7320106d6f2449246058f5805cc6b8282b12822630b25249bd5da39abd60e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:6b6c30fe09449cbd040940cec6521140a6c97e8ec753b235963fa2f2c97fae8a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:1ce2cb9fb812f4eb8b8232359bcc7ab68313e0957f09e9b7ef7dd0aaed34a884
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:8f9999a76001a1a72f9e446eed0257bed2b159c0feb97df85b4e01a6b27d07e2