Sign inSign up
Knative Serving Webhook

dhi.io/knative-webhook

Knative Serving Webhook 1.22.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1.22-alpine-fips-dev, 1.22-alpine3.24-fips-dev, 1.22.1-alpine-fips-dev, 1.22.1-alpine3.24-fips-dev

Index digest:

sha256:dbde31e8840e3fcf7090532d9eeb0ad89d7f524abf84a6e459312c4a5ea8c206

Manifest digest:

sha256:b7336653227dd35c1117cc5f80697f141d5885d2122efcffae5b885577f15070

Size

34.20 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/knative-webhook:1.22-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/knative-webhook:1.22-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/knative-webhook@sha256:1bca1ce6f0bd74594629b925c52f0a49c3079ddc8fb74650f84d30a5f9122798
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/knative-webhook@sha256:55e82c5d2e18d05ad55cfd74cb9b179155f900b8b4ed68e8def4c89d1c6b4250
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/knative-webhook@sha256:4533f930ec8a4e6209d7420bde5bb962f2b119f81379c25e2a588e08acfbcbe6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/knative-webhook@sha256:84cc80850ee49a99f6230773bfd80fbd449b4e7c7c6039e341e1ce6521e0b4f8
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/knative-webhook@sha256:8c89f7f8ff258708412ad15e4c8104ce587b27e9cc1c776e4fcae0952e297584
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/knative-webhook@sha256:64ffbfeb9ce3cc90bd97d379586a0a7010774315290dd7c390b409f857b45926
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/knative-webhook@sha256:c649581009df07809279ea8304b97374154c208373ff629668c5a8ebd4ac7423
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/knative-webhook@sha256:b45746bcf761194cb35e5d40832955a3b952a766b41e48e88d17e84530ca8ae6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/knative-webhook@sha256:34a2b40edcc57ce8a519ac24988f17be9c239b1f780dbdccef97d4b5fb732e6b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/knative-webhook@sha256:0551603a1eecfd0b6fbd7f23a280af3ad19575d11f32f50c4b08381018dd246c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/knative-webhook@sha256:dc75cc6721c8c416f29aba22ab26232e8c51f41b3def0d6cd893f78ee130c6c3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/knative-webhook@sha256:507657b4e15f2f6278e6f7e082bb7f2b9e6689d92ae2a59c71d81be202127281
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/knative-webhook@sha256:90ec9fb99196ff59778ab5e0a5e6240d0059fab3053df89986de5a7f8ed2a9a6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/knative-webhook@sha256:8237fbac26e2272cd76ed2bf24cd9427ab6ed81254474f20bdb9904e6c6b7176
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/knative-webhook@sha256:1df43da4761b11351e8d1bda740498bcea9f3c45eae0caec0218a7d0207f76e7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/knative-webhook@sha256:1c7fd268e29589d52d63ac734d8bc7b5621b7a4b9b595379c266dbc74a442389