Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.23.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.23-debian-dev, 1.23-debian13-dev, 1.23-dev, 1.23.0-debian-dev, 1.23.0-debian13-dev, 1.23.0-dev

Index digest:

sha256:541041ca0b0069010617b55f2ab21cce7a9a00ffdee982aa758fba69c83e232f

Manifest digest:

sha256:07df22957da1333e5aa81464f233f9e8ff558b0f2021c65d378f63740b03c8a2

Size

52.89 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:07a33185092334a770449d0dc420d74ccce58bdc08cef901488c3e9a277cef6a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:07c6005f6dcf001b0c65945866b4426deaea4d4f41d7ca4c45ceace4f226c296
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:7ec9b9ba769dba81b0c7244266b49be5cd21b363f557f01da1586939779aa54c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:82b5139a8e9a2a4d32dbbc251f78ad4633fb0043382378c908d86e36201c2730
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:8266b3df19b3aee03f53d15980c65a0a3d78e8740ecac75616e928d796605b2d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:300b16cea06221b55620233f7ff65bac935798ac2bfe2a63a9bc2f09c44d4304
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:0b5f2fd6e091f194caf7fff533399c331d2cddeebc748b38fbb5de323344b417
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:268552e0772f0147b508e9d758d43687cae1a3a7b0ba4d143ad14a91762137ac
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:c22b38c4b782133e0bb9964a7ab58ce2ba199d566ecb732f887c5b67efab9ff8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:5b1fcb72e0ed84f5f8d1663a7965ab4db9460de6cac620031e03c902c344ac3a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:15f408dc24a992a23f733531d3ca531bafc2398570b5f38c638ba8278e653804
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:b57137b63448ce5cbd8e15444b6b2e4bc030e7d3fc3f393062c61b5c05134d9c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:bdfef606fc9c91c837a6d5f330c91047fc19e4ec2cf761958ae61edf1d75850a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:ee2c80b35ae431dd6ad7eb6e4019d20480688c09898bb7519b10faa06018fd43
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:f24d4b29c2ac5997e6a3b1bb987444fd48bd610a7bdd0b246a424d4a4f2dc0c8