Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

1.22-alpine-dev, 1.22-alpine3.24-dev, 1.22.1-alpine-dev, 1.22.1-alpine3.24-dev

Index digest:

sha256:cff2670b642e3ecf65a6ff5f94439d5c83c0512f3f6e760651ce705f87522d43

Manifest digest:

sha256:ffd63de60d6eea7c9115f2ad8d0306fc535157e606fa698346d68b47959645b7

Size

33.34 MB

Last pushed

4 days ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:53f3bca16252983a1cf12b3a75aa8de93fd8e2d7fd1a461ad12e8353e1b521b0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:44b2681e77037e0635dd0e8d71b2c41d353707f1cf2509c0eba77c8a2364bf57
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:691ff0bf878869324b907ea6b1cfa71b32cf209eff6d83c8dddde16c5a507757
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:7f2c4da70616ff47dbf58843081e51a490e9d801594ba16b7a82615fcc3ab97d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:5706bb3f3bfd3a36778caa43209a461dcadd2b4a8cad66e6ad4a998dce530c1c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:f6c3c311c5d372250c5a91fcba8efceb3a2bab40df748d7d1056fa277cfa473e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:9fa48cbe6ee1d34f4b778f21bc5be60b0a1343a6fb09ee10fb6bb891dba1abb2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:0da2eae921f00f89154c942482fa8421fa3398b03aa72ca4c673829e0beabf44
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:0ccbf7b9b979c0b7f6e2a8475b205afc2b5aa8cfaacc8425010fb9820ece6292
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:daa512dc6f374a44316369f9a86849c9f1a2f548efb0cf020d176dd08be9ca8f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:4c5c11f26095bc7a41e6efb05d5996b0172dcc2c8ffe7e695ea116d225892ce8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:f43428cbca7705f43a569b6969511005c380ac11def42e5278ac07585a3ff32f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:efd8b835584a35c017f3feacd982444870801debe9bd4b4e43157e02a57be95d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:d42d572b0487c7fbea08b8ed432a3fa2b382f51c9882a479ccd4453113c58ae7