Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.23.x

CIS
linux/amd64
alpine 3.24
Tags:

1-alpine, 1-alpine3.24, 1.23-alpine, 1.23-alpine3.24, 1.23.0-alpine, 1.23.0-alpine3.24

Index digest:

sha256:1d460a0b2365e2257542d7be59dc40a3e2aba344b2cc81c84eca0138a34dea67

Manifest digest:

sha256:a27e62f77dcc16a782a170ec555c28df23933e6ae0c9c7f46374e3a02182e5b1

Size

14.47 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:d369f2813ab85f13e44ae58fe64c4c4f45340dc325e67f62ad91ef4e10dc7604
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:58aedd88cc328588191590e8258396063a447a44d793fe55428389eb94c7cb48
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:6d4e0ceeaf2735840f2378a5457683a224cb4f97ae8b14e94004dd43f8adae08
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:c3dfdb11f8b0c76750a7da2f06d2be36f504016e9c465cfa30d9e6a2600a2d52
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:2661872006e66a421e16dc8ddad10005d8ab6111d0f1b1993d5ccb40bdd0665c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:d0a4cbc75285f845b8ccc83abb146823471fd7454620b42ec6613f29323d52da
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:a7aae2493014fc783706eb786c016e7ad4dec51a7b795ead8d9dcad51da4b8dd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:64bba8fcf537998ab61907cea3483d2456de22ee438da7d332294d73dbadc0a7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:bda300d1f47060212fdd32578cf16892766324cc2e98d88d82d1ce9b369757c7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:874a0d80750c2096e580a377ae55a7e8f43d16f15d7551d3d035a54b20365fa9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:c1f250e7e65ab505c6e7f05189c1548ccdc1d54c2e84a7d7b8129476eaa67868
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:7942220b297f8fd11ea31e967fb9f47d26604db151ebb116ccc9d821de82bfb1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:2d1278168ad3e0f2ad646fab5890897fb464f47776fe93c434c0924a49d225f5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:0c330199eb9b01e781548a695a7bea9b6138be9b3c395050031989972daaed98