Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x

CIS
linux/amd64
alpine 3.24
Tags:

1.22-alpine, 1.22-alpine3.24, 1.22.1-alpine, 1.22.1-alpine3.24

Index digest:

sha256:606bfe4299bc7345b4249995846cd027595b014d788b718ca9b5f6d443b56522

Manifest digest:

sha256:fbcb415161af2f254ade524625fa4aaf0ffcd4b0d76a4dd0e30f3a8b4324e0ca

Size

14.44 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:e8100e515b7997770bae4f4589b3eb6b8251f55d6fbcbeb7c5496c072b0e6568
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:0dfdaed9f03d8a3d17555dd654a7c7bbfe9b9eb1848545b6da95779ccf436494
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:ce78966e5f2c54c4f0f636d529c5f9498f59fc9af16bfe93657eb5d102e3ab9c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:8a0d9c4fce119ae32ed4bcb4cceeb1e40a90caf71b2cfa5aec5f58e278830b8a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:b6069db384a28d13cdc81e2d424ae4cb2ba99808df20fc1256e63e591a25e1c6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:eda57fe0937d34aaa8318b102b3a4be69b6aa62b0c40fa7647a47a6fa0e3de19
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:35354c5b477c607de52429714db44767a3868080604c2ad684d3bdb9a9606e99
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:d14a9897050630ceeffe1c6614bd31e8bff7c12b197a990dced3d028da43cc4b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:692e45e2a5e9631f56fffc2d328266c48c0e746dd22ce57547f257072c091494
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:0f7394908e92ba80ebd7d7f793e495919edd174e8160fb826cb2baab300148d0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:08694af08180e8161169a39a9ee1128ca6540454b74dc11b5e11dd1c6c6d60be
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:4470910653e2c4ce93a9ff4cf6f1a80bedf9c4f0b2d54a7ff38897e06bf067a7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:793627dcf34adc51b9b08b604e0a0e1db46221f0b3a85bbaf5135f8bde4b218d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:2d29dee9f6024f6bcba5a24af689e178ad54868422af65d5baa2d70f1425b62a