fix(sca): Don't generate a dependnecy on ruby when found in shebang #1700
Chainguard Enforce / Enforce - Commit Signing
succeeded
Dec 13, 2024 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 276326771632628102925809564152314057028024592696 (0x3066ebc596792fb7c0f532e3fd9b35af677ee938)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Dec 13 00:59:41 2024 UTC
Not After : Dec 13 01:09:41 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
f8:37:a9:79:80:0b:46:03:ea:02:93:1d:c0:2e:2d:
7f:19:43:97:be:c5:67:66:d8:ad:a6:f4:94:8b:a7:
47:26
Y:
11:06:8b:e9:81:63:70:1b:2d:72:44:7a:fb:07:d1:
3e:33:15:e8:f1:02:e3:da:9c:d2:88:e8:19:97:37:
46:3a
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
36:AC:32:BD:F1:3D:25:3D:27:51:05:9F:A2:28:89:01:0B:F2:24:F6
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:[email protected]
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHkAdwB1AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABk72HTnYAAAQDAEYwRAIgbvysGBjavEvnqR+BUgBS8OZVMdw0aTWLyFYwYwakNMQCIAD1EWof9NQYgOuMklshO0sABTyDsFxNhHwPrQ95tIaR
Signature Algorithm: ECDSA-SHA384
30:66:02:31:00:b8:05:39:1a:05:ca:6d:e0:52:6e:c7:ec:a4:
33:7c:72:83:ef:71:c3:35:43:f9:48:91:1b:c7:2a:81:06:7f:
e2:6d:59:e6:e2:cf:dc:6c:9a:46:be:5e:ef:e5:ef:7f:9b:02:
31:00:e1:14:51:00:e4:37:16:64:a1:40:2d:d0:d2:01:5d:54:
c8:c3:b9:48:65:a6:ba:6b:27:bf:91:d1:1c:46:e6:7e:95:16:
0b:c1:55:da:3c:48:56:7c:63:1e:a2:15:96:3d
Rekor Entry
{
"body": "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",
"integratedTime": 1734051581,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 155129094,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n33225107\nG+EgwPfBw+Vrc6vr59t5Jk1z3gLyDuaLdkTHIp90dd8=\n\n— rekor.sigstore.dev wNI9ajBFAiEAgYjBCDlTnv1tZruv9SjnP3droSEC1/wUJSVR8Gc/ZQkCIDWbucppjUoK1Sck+OQK9wJWdtx+r5WB2fyZinOew38W\n",
"hashes": [
"87d27a81eb902bb360a03555f801dc80a105f1752500cf0bd91a0fa22ea017a3",
"46cbb26565f970bdefb96a4f4a3a4647d7c7b32a8cd6abed7caab77d70261de6",
"134787d1fb1a02a1d0aa71f4bc4670b80e3612193f4b269e15f703854e849bdd",
"55e0e1b6ff3f25ecd8f7308f3e58d70d07e0df0bf1abfa923139cdc33aec2ff3",
"9f930c8f1cc0aa3597109062e7b76090d7bc0a7e9048b61dade547403c867739",
"f66651dea74f2c582873f29aa1bd3f9428d5582c882b7d24c26be7a577eae8e8",
"e3a475ca3b8ca589563963cfbda63fa431b05909dfbf6be9ff574e70fb0934fa",
"1a0a44943ce934e143aefa8be7642b5c87d452e48fa8390713d270fabd434582",
"4afa10ae074a6130bcd910b1b98b7c47136be7e0ba49d7a3814ee4498a179944",
"cc6f3badcbdcb9607ed4aa768a1379a53978b94f5dd8bde97e20e5ae6206f220",
"9906c1520149c65e94208f8345b3bd8562f582e316b9fac04e5e221ec27a4e80",
"3b65b6b37dffa249dcfc53fd5800429350cb0559a2e8c966b2cb0cf65ec72468",
"e3a3fd213c5ba10d23b4813d0eb0edc2e6a80400b40e04e3c9dbef8c4862db49",
"420075478315a6f1c89b82343ea1100a730a7aa8c0305b5e2dc26d4c731bfe15",
"d79f6157c49e48c70a9173ba90044dbd88321d31202d0128fc702e96899d516d",
"55b3a6e036dd65b43c15cbfd7b1adab9ff28687cb5aafa70da83f2a6c9e653b4",
"81258a2f6935646666e390bc85274dc166a7f2a3abb339795fb5ace7a87e1553",
"47b84ed57f8a812c3c3a88ddf22dbe1b7073058ced911044e8ba584973e0df75",
"a0e79c15f37762a0ce91b8a34bf7a3d561790dafc6b7f0193616f013dba8384f",
"e25505d183aef579080d7297034c0c4b377a55e0d8dd3640826a0e796992dbe6",
"81ffbd9b9e760773e79169ced28e0a755be3713dd65472eb09b7f50e8558285c"
],
"logIndex": 33224832,
"rootHash": "1be120c0f7c1c3e56b73abebe7db79264d73de02f20ee68b7644c7229f7475df",
"treeSize": 33225107
},
"signedEntryTimestamp": "MEUCIDM2F4JvWVe0h6I3cnW16ZTqXmYZ2XoMj/pafWGQoQ1ZAiEA/7fhohRfZSiCH+t9YR2RIjLnPYtCLJOhc4noOoZp7MI="
}
}
Loading