Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.23.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.23-debian-dev, 1.23-debian13-dev, 1.23-dev, 1.23.0-debian-dev, 1.23.0-debian13-dev, 1.23.0-dev

Index digest:

sha256:abb81f115fb1d5d5e406074d662811b8312f08a2ba27fb096891141e13e16bc3

Manifest digest:

sha256:f67b4caaa6c2d7950d74bcb7e9f798df453372567a84513714aef988b7eb0c2e

Size

52.90 MB

Last pushed

1 day ago

Vulnerabilities

0
1
0
2
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:313939965ba35a2665d1daf3a543d5012edc13edee7c6b911817227b44145053
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:f19e5299eefbb2f11de0b54894952154e0a825b0ac80c5d241d110b36e7438b6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:5b91861b72d17df87d38e8dd7d0c29c757cdb311beae6c3d3086ad0271282400
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:8452a2265364e3ab7e09c87720e7d2ece611dc0d572fb0d4f180e363f11429af
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:60595abf0a5ed22a415af2ac9aadd3e8e03ac0e715a029239745dede2fe86187
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:c5f5b7b33e55703a53b850a9684521ebe3b8ef9be421d19dd5cbd5156c7b3322
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:31aa1cdae0f15550d5baf79225cb749fed5d435d2f1a36560f2d0ae3eeb407e9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:ea0f93d61a65303a06101a5677294117fc749cf073a165054b5c0576bfcdb3ec
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:ee87fc5c6e5190f17f6b5ca9b3d9830e52164c5486dc6834ba608afd23cc15e9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:0bd371eb13017234df651001ee4dc686b2f74e3d2a77993063665c9f9f1ca03e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:ead5d3c945acd81bd4b51b212be53e965de3d4a0364d20da415ffc75676a0118
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:4232bb1f65a26c2d66e6ba83918307f1a66213c63b231f1a8c26f8e323b0b413
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:8b21bd80bd94aed67bf6f737d44f4f66ea1c5697be1259ffb80d80ab335f95e0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:0c52aa2b8b212c6d9c5d5f015c79686bfabbe6094004c3a2d720918c8956cdb5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:a88dbf3128c0f5b55de45b74a79ca808e76791f40b0046cd153d87ef5ce4359c