Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.22-debian-dev, 1.22-debian13-dev, 1.22-dev, 1.22.1-debian-dev, 1.22.1-debian13-dev, 1.22.1-dev

Index digest:

sha256:75181e8e4060044d424143331f43a464735a3d10d80aa8dff64fab9c691e5822

Manifest digest:

sha256:1884a39f8b67c4fb3c1867d1e68a61bf8043d6d00ecc14489d587b890ca0fff5

Size

52.83 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:c583d55d39a7a95fbba54921a29f137fad43fd2029167390a0fd6f4716a4ed85
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:1fc1e8ca41b7c2ab7c53948f73e795e4349501493c62c149afb71fa9f4691d32
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:28ffdf1f6f7ae5d11918ce45cdd117c0b134efb5fd16982e8d428a9285f069f8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:c25686f6dd00a74f6d0674a54f8f499abdc3b05b6614e91fcdc548bab5380535
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/knative-webhook@sha256:af0538c0ae20e5b57438d33e0036fcce694123c86e4c0699a416581a1df00c84
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:3e8abafad20e9341404cc28b48641df78ba5bc84a5e985ed1ecd435597794576
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:0ba1fe711a536d03241a14724b8541c54e9dc0f59f0c3f1efca62be7e81b4fc6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:0e9499f2c5796ffc0ef2d5b24fbf1362c383d57d30f1f5edfde0fb68a2716b47
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:1f03773018e26aa9879ce62a15e15e61f8346d63fd2b471810b76ce7bb060b38
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:02b5fbc219f27ddb8b6a075817e468a0d96dd01833574d8c77eec77050c2ade9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:313d46a48b413ce8c664e9f059a99770c9fb2b7dfd678f67f844c559d63785db
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:363783a6bbdfaf4df60b71e83899912972688bc22155c446cf16343b6beee0bb
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:8009ea201749a1b325bcf34444c1cf33edf98260c499a6b57cd6ede16bd1f92a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:49f52572efb8ddf92ce1d32567f208e9289097e8e93c8f1b2dd1c2326db595cb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:461aac225a5784552190ae94aa4de2a2135cf7e8943827313d7482e468b62e7d