Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

1.22-alpine-dev, 1.22-alpine3.24-dev, 1.22.1-alpine-dev, 1.22.1-alpine3.24-dev

Index digest:

sha256:f421d99b65e898a4cc7ca0d85c4167e6278a3abaa369e8fee3d684b80e2e894f

Manifest digest:

sha256:a738f66a97d7a340a8865e08ce1d80d5ba62069981bb77d6d9e84aa6bbcac4e3

Size

33.34 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:6c309431d6f88ef2a269afa80a0796bd28c4bdeedff359f824e9821cd3429232
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:0a28c0f58b27179d1efb2c1792e28e810ee30d533f11c22599cbeea964fdb137
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:15b5368490519a2f15f077c78ae5377e2607f1731c765a648a794614c6b99262
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:830032776a79d5a984259d50c1eacff907fd9c0b0b86b54c8f37fec20d3ea709
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:f5a5389b6d3e9a41faa625e63f104c048a60458e83495ab031aa1181fe20377f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:dbd341776288b5302bd21825cdfc9943ffb189b3ddb6f4eefd0ba99f5e83543a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:63957e0f3e83f450e90606d119ff1f27843c580f6253f6c74fcc7ed9d4bb00c4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:2d1be58210297d1c37afb6bcabe13a063350c56bb09186c62c56f365fa2f6312
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:205a192c3a28954d20e61adce64cf7d8c755725162533f3c2ce010a3a06389c4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:e3022d71fb9550432e5b99d8a3ae7bb2efb67ea4e5e84e8ef0c90fd628f5811d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:994e8aeb253cf7ef5e933cca625e49bd841712c02cefa27cd8e4005df6b27862
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:d629c333800446a9cc302c20022f53b0d272903dfe3a44d79b6518bd834e6d54
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:a62ddc5a1e289cd1612b4e3c48520c99681133883c1e06c07ae65e3154f6fdbe
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:b862a671cbf0f91659bbb6b7bb3b840bc99f5c237b55c681421d4045ed16e171