Add a test that important files come early in extracted images #1964
Chainguard Enforce / Enforce - Commit Signing
succeeded
Dec 3, 2025 in 1s
Successfully verified commit signature.
| CLAIM | DESCRIPTION | |
|---|---|---|
| ✅ | Found Git signature | |
| ✅ | Validated Git signature | |
| ✅ | Validated Rekor entry | |
| ✅ | Allowed by policy |
Details
Certificate
Details
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 486671592111924712817036473942313133330218574284 (0x553f1be41548ab575c08cd3b2b6d901a269b61cc)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Dec 3 19:51:48 2025 UTC
Not After : Dec 3 20:01:48 2025 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
ee:9d:b4:06:53:eb:7c:78:ec:35:1c:70:51:44:4c:
97:e4:b0:a7:78:71:ec:66:1f:ef:2a:2c:86:28:9b:
14:b9
Y:
5d:ee:57:73:16:23:34:42:cc:de:65:a5:82:1c:54:
43:2a:6c:a8:9e:3c:1e:89:57:d7:ae:ee:51:2b:51:
41:e1
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
7D:67:7C:68:55:1A:BE:52:2A:8F:20:E5:25:A0:F1:60:B0:4B:B0:15
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:[email protected]
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABmuXFXEgAAAQDAEcwRQIgHrf6yMM/8lfj8814dNFwCSAZlE5PFz3341ovoeR8sqoCIQCfoReYo/1fL83+PQ8U7YHjwNsPQ/kiKF8HegI/LZ131g==
Signature Algorithm: ECDSA-SHA384
30:65:02:31:00:97:0d:da:5b:56:ae:c1:53:51:3d:d1:93:91:
ff:9a:bb:26:be:1f:b5:8f:5f:34:e3:e1:f4:c8:15:d8:6a:3d:
e3:53:85:b7:33:1d:34:8e:87:c8:6e:ae:9d:e8:24:2d:c7:02:
30:05:25:9d:bf:33:f3:07:53:f5:86:9c:5c:5c:aa:95:99:a3:
cf:20:39:bf:a2:bf:d3:47:7b:65:67:60:5e:87:98:d7:72:09:
af:50:6c:02:66:8b:e9:35:dc:7c:5a:14:db
Rekor Entry
Details
{
"body": "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",
"integratedTime": 1764791508,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 738503043,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n616750055\nOPgGRAMMY/olEKtI0QO37JF3Jh/EkZAgMVh/6Lnk36s=\n\n— rekor.sigstore.dev wNI9ajBEAiBD7SztZ/YcIYK6tjxWC2W0j2KZjwmi6bInE182gPTGIwIgKyNfd21lnpJQA+hXbnTbiTiy3aDCRRTdDmfIRI713qo=\n",
"hashes": [
"834f66f982fd69887498b6863066fdd97f21bd833ce9dc0df603b767d36b8a0e",
"c5ac83eb25bbd6acbe23bf9be978895c387f78c54c4c436f6b18362b82eb9175",
"98a7b145b9c7d72b0edacddbffa97b3d78fd31c63546b5c963a7e430044019c5",
"4817f03c2e6eb8f4ef5eb419817ce62e6fe8d555d1f709c4a9d6639915747374",
"fd0747e48ff62cebc4cfb082d9a32f60013b2f3bd3f0d8c29a48eba6117a3ea3",
"c5731cbe5c8976007fe9a88b3f1592831660d02a08d17225e6199657cf1c0072",
"08471fb1228a086186dc29e997ece2679db552167517229e6d5a79d09bf73bc7",
"68231b23020d478b395c3398d761f0eba8f45bb9b8de8f82f5db380e74316068",
"b7ae6ed9fbe7e10a19f18b2ac1366d3ad2adc956b69c52f17ea35aed6b04aeec",
"0f5ba98ac98ff0717d21eb642fea9c0056087402211809fe711ee3d9e0c13729",
"668b0434b1e5075698d2988abbacb79c34f1444cfd2dafd57bd4b3ce101df61f",
"4780ea15a8e862bf6d630b12c6304043376b28bf70426d1282eae81e2572035d",
"8116e42001de53dfbcf017b95b7b6600919e53392326ad28df59a571cb53531c",
"45cf8bd5c7fe8993a2ba60fd5ae8f296b59e6c4ea91a7f66d94d3879936d0a9a",
"e14547d2b5c9d6485c1ef4bade0504e4511ff5de5f7a855b00648ff4aa9fe0c9",
"4fe0ab353ad8d725db718ce120553b90e905a15c53a64d35d58572911244d3ad",
"a180b1674a8df6a6909885ee24c4478a2a995a6312e16c7e8d96c507d8008194",
"4322ccb98565ad9cd316ac86e213783527fb74705c210bc83b6a231d71b5be63",
"7ad305ba40fc987383dfb71e4f0075025da70b7888cf2fc24ed363c1f9499831",
"86e687d594a44723f8fafa661ada669242fce3996172637d8a8f0c21ee92a1bd",
"6665246241c1cb507bdb726b12088abdea5374762b3facb66b8a0e0d8be2e556",
"4f80ea583e36840b4dfaf5fc8ca096aa80b899e13825e908f4bc5818270fcb53"
],
"logIndex": 616598781,
"rootHash": "38f80644030c63fa2510ab48d103b7ec9177261fc491902031587fe8b9e4dfab",
"treeSize": 616750055
},
"signedEntryTimestamp": "MEQCIDEWE4hf/jK6Zi3+f2mrLNG0QuSqMNtzXVfr6Hx9n2nHAiBpt8O+7xGMcpz+ZRiwolaRH7Q1g7ld7QMEJVGjqnwd6Q=="
}
}
Loading