Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.22-debian-dev, 1.22-debian13-dev, 1.22-dev, 1.22.1-debian-dev, 1.22.1-debian13-dev, 1.22.1-dev

Index digest:

sha256:f01fd9c17f920379256e996029ab0e2fcfbc356d1ed7f1c8ea3c6fefd4d5d02e

Manifest digest:

sha256:cf4c87cae696e16c1eecdbc817587a10c275b16924869fa1b48e850d4c48314f

Size

52.83 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
2
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:aad60a36873681dc3160e85fda55e5d19c1de8ce11fbe10ae8d2cb32495c796e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:906a6e69ac9afcef873eff0d48e61fd38072077b880abd467106ae60dfd243c1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:87c0cc4f695ce0be6f730e079a3173a16d95624d8d32fa07352ea778ef1e512a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:fa8568e603b0184d2aa368116624ed5b05bb358c0a4d6567b631a474a83a4adf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:7225a74dea90d5983354550ead2af61b3e911163644814a6652439acd6087b50
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:b1f2279e4d5b210f5c17ec36a09b4f3e74ebb5a6fe16e10fef5fa61a3db65442
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:0c7b3ebcc90d5a3d3d52a89a3a4e604f71c5da38169c1c6a93a05a8b79a8c306
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:ff771966a119ab1e7e2cd27c90c7507bd66e66853e7095d331121a3974cb056d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:65b73e06ceab7d32df353f340449b02591c317688c8a7df5d432831e7f003565
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:03dbab6b9261c97582be2518d0ef5825c3e2b240c881dc9c9c24340ddccee8d4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:b9102103262988ecdf18688afd11df00b48e4e2098fbcca15b998837a46fcdf9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:3f0c790cc1560c4a6a6af394f4b74101c8629b47b08dc87eba43e78224faf7a9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:1f4b004985347ff2f4baeb037fec73e3b6b25b11650b7ee1fc23bd1a559a6232
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:41a88a97d878e8c3be1736a67b8846430a622af068d11c0b4a5ebf0528827dbd
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:e8b91baca7cb06f09acf1bd672f23cc4b71d5ca0302b908950c9ef91a21553d8