Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1.22-alpine-fips-dev, 1.22-alpine3.24-fips-dev, 1.22.1-alpine-fips-dev, 1.22.1-alpine3.24-fips-dev

Index digest:

sha256:167364ed447bdc77e701cfd48963101bf07238e04c75dda00fcb925b37494741

Manifest digest:

sha256:67787e9e390f60563ac7a93eecfd8b164d4b6e8ff128a691c65691446d53b3fa

Size

34.20 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:958701cf4f4ab5d8cfb874e0963977914a69cd4db9d93a1916b283c3bdfc44fc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:5ea3c9da6c8d291e638be645821718b97294a38efe5000ed547c5679f0b2f401
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:6d2fbb231d706bda2f317e7b6c1769668125b3c6cf8d475951e0f37403ae0b27
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:f535c72dc92d31659b499dc4f0b15e89af5abbe81e767899c2fbf44f540e05f4
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:af546246c73df5ac914510a9eb44cee2967580ed7c9a61e97b8490a0ad4e415c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:f39c03fe9ef609b153c615adf4963ed2d1dbc4e7fb845dc22a9e8f83258830d2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:624f221dc4761922ccf0830a5b6d192d8b5167fd169187fcabd8b1598feec1df
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:fb93b452ffcb1e8c3208ef7ac0c9a61d3dadeb9a933614d4411a4c7e1388f477
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:79a92853cf6ba84565965d5d4d8af7b7a9f7edef294d4df5143272a04eb4c446
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:2222fbdf4aca953be8f38c90d8078b606aec544a0d6ef398cc1fdfa03ae223d3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:e382808349c61e3f0cfd0d9004e3dcae343310182a4ac52484d0dbcad4775614
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:0de8bab6468a551534024f4ed9b38b42efcc8aec67d2e3cf6567885fecb34b7d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:86153d36a81474433c1c0883b3b0e94e5f50fc8e917ca64eeb4a750d3b49be84
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:903ead0361f9c0b6a0e4837bec4bd651530c41aab7ee92d2d9638f931b6137a4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:ed634d6b9c61416fb54efe0041e41c1c166eee0a9a032a6339562b8796b61d26
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:3e1c6d9bcd7e17ba5ff88f645e183db6d3509584bfcfa6444c473b1db0b34e86