Skip to content

add test that important files come early in extracted images

e23edcc
Select commit
Loading
Failed to load commit list.
Merged

Add a test that important files come early in extracted images #1964

add test that important files come early in extracted images
e23edcc
Select commit
Loading
Failed to load commit list.
Chainguard Enforce / Enforce - Commit Signing succeeded Dec 3, 2025 in 1s

Successfully verified commit signature.

CLAIM DESCRIPTION
Found Git signature
Validated Git signature
Validated Rekor entry
Allowed by policy

Details

Certificate

Details
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 486671592111924712817036473942313133330218574284 (0x553f1be41548ab575c08cd3b2b6d901a269b61cc)
    Signature Algorithm: ECDSA-SHA384
        Issuer: O=sigstore.dev,CN=sigstore-intermediate
        Validity
            Not Before: Dec 3 19:51:48 2025 UTC
            Not After : Dec 3 20:01:48 2025 UTC
        Subject:         Subject Public Key Info:
            Public Key Algorithm: ECDSA
                Public-Key: (256 bit)
                X:
                    ee:9d:b4:06:53:eb:7c:78:ec:35:1c:70:51:44:4c:
                    97:e4:b0:a7:78:71:ec:66:1f:ef:2a:2c:86:28:9b:
                    14:b9
                Y:
                    5d:ee:57:73:16:23:34:42:cc:de:65:a5:82:1c:54:
                    43:2a:6c:a8:9e:3c:1e:89:57:d7:ae:ee:51:2b:51:
                    41:e1
                Curve: P-256
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature
            X509v3 Extended Key Usage:
                Code Signing
            X509v3 Subject Key Identifier:
                7D:67:7C:68:55:1A:BE:52:2A:8F:20:E5:25:A0:F1:60:B0:4B:B0:15
            X509v3 Authority Key Identifier:
                keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
            X509v3 Subject Alternative Name: critical
                email:[email protected]
            oidcIssuer:
                https://accounts.google.com
            Unknown extension 1.3.6.1.4.1.57264.1.8
            Signed Certificate Timestamp:
                BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABmuXFXEgAAAQDAEcwRQIgHrf6yMM/8lfj8814dNFwCSAZlE5PFz3341ovoeR8sqoCIQCfoReYo/1fL83+PQ8U7YHjwNsPQ/kiKF8HegI/LZ131g==

    Signature Algorithm: ECDSA-SHA384
         30:65:02:31:00:97:0d:da:5b:56:ae:c1:53:51:3d:d1:93:91:
         ff:9a:bb:26:be:1f:b5:8f:5f:34:e3:e1:f4:c8:15:d8:6a:3d:
         e3:53:85:b7:33:1d:34:8e:87:c8:6e:ae:9d:e8:24:2d:c7:02:
         30:05:25:9d:bf:33:f3:07:53:f5:86:9c:5c:5c:aa:95:99:a3:
         cf:20:39:bf:a2:bf:d3:47:7b:65:67:60:5e:87:98:d7:72:09:
         af:50:6c:02:66:8b:e9:35:dc:7c:5a:14:db

Rekor Entry

Details
{
  "body": "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",
  "integratedTime": 1764791508,
  "logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
  "logIndex": 738503043,
  "verification": {
    "inclusionProof": {
      "checkpoint": "rekor.sigstore.dev - 1193050959916656506\n616750055\nOPgGRAMMY/olEKtI0QO37JF3Jh/EkZAgMVh/6Lnk36s=\n\n— rekor.sigstore.dev wNI9ajBEAiBD7SztZ/YcIYK6tjxWC2W0j2KZjwmi6bInE182gPTGIwIgKyNfd21lnpJQA+hXbnTbiTiy3aDCRRTdDmfIRI713qo=\n",
      "hashes": [
        "834f66f982fd69887498b6863066fdd97f21bd833ce9dc0df603b767d36b8a0e",
        "c5ac83eb25bbd6acbe23bf9be978895c387f78c54c4c436f6b18362b82eb9175",
        "98a7b145b9c7d72b0edacddbffa97b3d78fd31c63546b5c963a7e430044019c5",
        "4817f03c2e6eb8f4ef5eb419817ce62e6fe8d555d1f709c4a9d6639915747374",
        "fd0747e48ff62cebc4cfb082d9a32f60013b2f3bd3f0d8c29a48eba6117a3ea3",
        "c5731cbe5c8976007fe9a88b3f1592831660d02a08d17225e6199657cf1c0072",
        "08471fb1228a086186dc29e997ece2679db552167517229e6d5a79d09bf73bc7",
        "68231b23020d478b395c3398d761f0eba8f45bb9b8de8f82f5db380e74316068",
        "b7ae6ed9fbe7e10a19f18b2ac1366d3ad2adc956b69c52f17ea35aed6b04aeec",
        "0f5ba98ac98ff0717d21eb642fea9c0056087402211809fe711ee3d9e0c13729",
        "668b0434b1e5075698d2988abbacb79c34f1444cfd2dafd57bd4b3ce101df61f",
        "4780ea15a8e862bf6d630b12c6304043376b28bf70426d1282eae81e2572035d",
        "8116e42001de53dfbcf017b95b7b6600919e53392326ad28df59a571cb53531c",
        "45cf8bd5c7fe8993a2ba60fd5ae8f296b59e6c4ea91a7f66d94d3879936d0a9a",
        "e14547d2b5c9d6485c1ef4bade0504e4511ff5de5f7a855b00648ff4aa9fe0c9",
        "4fe0ab353ad8d725db718ce120553b90e905a15c53a64d35d58572911244d3ad",
        "a180b1674a8df6a6909885ee24c4478a2a995a6312e16c7e8d96c507d8008194",
        "4322ccb98565ad9cd316ac86e213783527fb74705c210bc83b6a231d71b5be63",
        "7ad305ba40fc987383dfb71e4f0075025da70b7888cf2fc24ed363c1f9499831",
        "86e687d594a44723f8fafa661ada669242fce3996172637d8a8f0c21ee92a1bd",
        "6665246241c1cb507bdb726b12088abdea5374762b3facb66b8a0e0d8be2e556",
        "4f80ea583e36840b4dfaf5fc8ca096aa80b899e13825e908f4bc5818270fcb53"
      ],
      "logIndex": 616598781,
      "rootHash": "38f80644030c63fa2510ab48d103b7ec9177261fc491902031587fe8b9e4dfab",
      "treeSize": 616750055
    },
    "signedEntryTimestamp": "MEQCIDEWE4hf/jK6Zi3+f2mrLNG0QuSqMNtzXVfr6Hx9n2nHAiBpt8O+7xGMcpz+ZRiwolaRH7Q1g7ld7QMEJVGjqnwd6Q=="
  }
}