Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.23.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.23, 1.23-debian, 1.23-debian13, 1.23.0, 1.23.0-debian, 1.23.0-debian13

Index digest:

sha256:53df051547349835a7f671b2a16e3efa1a409e64a4990bec6fd9d8096129d157

Manifest digest:

sha256:83a41fb572bdfe415b2c093fd0610b7b9b81983dd4d6ac78e261408890468587

Size

14.87 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:6b19334fb1a06fa39e9d82fb15bee84aeecc965af7b935bab5b6e3b20f03616b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:018d59bc29a62cf51d8e066eb72e33ee4ab28ebafeba10554d67c1cae43a5e5d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:f2f1bfd15d394bdb786afba807668c1591e6cceda4172ed1d26683253c1042bb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:0a2965e94e54c92ca3dd67c7c9fe76ad369b4ed578a9241d926106e6e605bd71
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:80796b3da4947cf48f7ed3e850a7e1f9505e9bb00fb4ef1593834e4b78df9ff5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:68d0c8b24293216f542be881c3102c5be40e6ec2977ffcd6c299efc4a3c12bcb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:68e3c2302b50882bed02707cde3c16b42cfd13e7f3a863dd2027d61b912aa3be
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:62ef1d04690fa58a06165b8af0d13899ce2b3dda86c2b1b281cf23720fd75bb9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:347b3ae7391a41a9b6b5dcdede8978559deb86772f00343f541a4b1adf478a8d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:5e5b48c1ea27a15777400a208f70d404fec32b6deb0582d6d7acab1a9f5358f6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:773134b13cca09bbc63f09c29f4b6cf875066339e1f243634b50cc8ae04b976d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:cbdb5bef0b07af5c9fd0c884c8ddb1f586ec2a617f08682fbd5a5174fe1529af
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:469f0d83f80502ac60e5a549c28584a9455ee805849e00633190b6a63bc2eef9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:226c6f3eec1629dcfbd6b48e448bd606d5e7a00d2a4a80daf9af517487881a13