Skip to content

Wiz scanner support for remediated libraries

30475a8
Select commit
Loading
Failed to load commit list.
Open

Wiz scanner support for remediated libraries #3376

Wiz scanner support for remediated libraries
30475a8
Select commit
Loading
Failed to load commit list.
Chainguard Enforce / Enforce - Commit Signing succeeded Jun 2, 2026 in 0s

Successfully verified commit signature.

CLAIM DESCRIPTION
Found Git signature
Validated Git signature
Validated Rekor entry
Allowed by policy

Details

Certificate

Details
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 526718380982452557102774583849749110433528839155 (0x5c42de7b4c3ef9da3dfc93399dd1dfd2ff0a7bf3)
    Signature Algorithm: ECDSA-SHA384
        Issuer: O=sigstore.dev,CN=sigstore-intermediate
        Validity
            Not Before: Jun 2 18:47:55 2026 UTC
            Not After : Jun 2 18:57:55 2026 UTC
        Subject:         Subject Public Key Info:
            Public Key Algorithm: ECDSA
                Public-Key: (256 bit)
                X:
                    41:ff:e9:62:09:d4:be:e7:ea:9c:75:b2:f9:d8:6e:
                    62:b4:0e:a7:6e:98:50:1d:a9:c8:1d:07:a3:da:68:
                    73:6b
                Y:
                    2a:9d:6e:0a:e3:77:d8:66:a5:af:34:96:47:81:f4:
                    fe:c8:2c:71:3c:79:75:2f:f5:b4:6b:bc:eb:90:0c:
                    90:b8
                Curve: P-256
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature
            X509v3 Extended Key Usage:
                Code Signing
            X509v3 Subject Key Identifier:
                BA:F6:D6:2A:CD:62:2F:4B:9A:4B:3B:AE:7D:0D:A2:20:9E:A2:C2:D7
            X509v3 Authority Key Identifier:
                keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
            X509v3 Subject Alternative Name: critical
                email:sally.stumbo@chainguard.dev
            oidcIssuer:
                https://accounts.google.com
            Unknown extension 1.3.6.1.4.1.57264.1.8
            Unknown extension 1.3.6.1.4.1.57264.1.24
            Signed Certificate Timestamp:
                BHkAdwB1AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABnomp7N4AAAQDAEYwRAIgNb7osLfZsu8LaJCt5DOkA1l+6k4L1wCRHfjw/Cwk02cCIGP6n8d9VRsI927xnKutV/WTAw5d8oVboFyV9gwMR62r

    Signature Algorithm: ECDSA-SHA384
         30:66:02:31:00:cb:9a:11:1a:a0:1b:18:73:36:0e:7f:31:86:
         f6:ce:b6:6b:61:30:25:4e:65:50:59:8a:3a:7e:e7:1e:b7:c2:
         eb:93:69:d7:d0:85:4c:5b:c1:db:42:bc:05:f5:82:2f:ae:02:
         31:00:89:e5:ac:c7:51:7e:29:fb:f9:ae:3f:83:21:80:b9:e5:
         4b:61:47:11:27:50:a7:2d:9f:81:f2:d5:4b:ee:fa:ed:a7:c6:
         3a:f9:fc:71:31:2b:d9:8d:e9:75:ec:07:94:64

Rekor Entry

Details
{
  "body": "eyJhcGlWZXJzaW9uIjoiMC4wLjEiLCJraW5kIjoiaGFzaGVkcmVrb3JkIiwic3BlYyI6eyJkYXRhIjp7Imhhc2giOnsiYWxnb3JpdGhtIjoic2hhMjU2IiwidmFsdWUiOiI4ZjA1MmUyYzc4N2JhZTllNWEzYmY1YTZjYTU4ODc4MTM0NzU4NjNmYmFiMGFlNWM1MmE4Y2E2MjU2YWEwODA3In19LCJzaWduYXR1cmUiOnsiY29udGVudCI6Ik1FVUNJQVFlRGZXSDUyaXUrbC9xd3F5WUJiVjROWVY3RmJQQ2lINGxsRHFLN2ZHUUFpRUF5UEVuMWh5cmZsMFFiZGhCQ0Y1MGUzKy84UnF5ZzArQTVoengvdnVTV3ZnPSIsInB1YmxpY0tleSI6eyJjb250ZW50IjoiTFMwdExTMUNSVWRKVGlCRFJWSlVTVVpKUTBGVVJTMHRMUzB0Q2sxSlNVUk5WRU5EUVhKaFowRjNTVUpCWjBsVldFVk1aV1V3ZHlzclpHODVMMHBOTlc1a1NHWXdkamhMWlM5TmQwTm5XVWxMYjFwSmVtb3dSVUYzVFhjS1RucEZWazFDVFVkQk1WVkZRMmhOVFdNeWJHNWpNMUoyWTIxVmRWcEhWakpOVWpSM1NFRlpSRlpSVVVSRmVGWjZZVmRrZW1SSE9YbGFVekZ3WW01U2JBcGpiVEZzV2tkc2FHUkhWWGRJYUdOT1RXcFpkMDVxUVhsTlZHY3dUbnBWTVZkb1kwNU5hbGwzVG1wQmVVMVVaekZPZWxVeFYycEJRVTFHYTNkRmQxbElDa3R2V2tsNmFqQkRRVkZaU1V0dldrbDZhakJFUVZGalJGRm5RVVZSWmk5d1dXZHVWWFoxWm5GdVNGZDVLMlJvZFZseVVVOXdNalpaVlVJeWNIbENNRWdLYnpsd2IyTXljM0Z1VnpSTE5ETm1XVnB4VjNaT1NscElaMlpVSzNsRGVIaFFTR3d4VEM5WE1HRTNlbkpyUVhsUmRVdFBRMEZrVlhkblowaFNUVUUwUndwQk1WVmtSSGRGUWk5M1VVVkJkMGxJWjBSQlZFSm5UbFpJVTFWRlJFUkJTMEpuWjNKQ1owVkdRbEZqUkVGNlFXUkNaMDVXU0ZFMFJVWm5VVlYxZG1KWENrdHpNV2xNTUhWaFUzcDFkV1pSTW1sSlNqWnBkM1JqZDBoM1dVUldVakJxUWtKbmQwWnZRVlV6T1ZCd2VqRlphMFZhWWpWeFRtcHdTMFpYYVhocE5Ga0tXa1E0ZDB0UldVUldVakJTUVZGSUwwSkNPSGRJV1VWaVl6SkdjMkpJYTNWak0xSXhZbGRLZGxGSFRtOVpWMngxV2pOV2FHTnRVWFZhUjFZeVRVTnJSd3BEYVhOSFFWRlJRbWMzT0hkQlVVVkZSekpvTUdSSVFucFBhVGgyV1ZkT2FtSXpWblZrU0UxMVdqSTVkbG95ZUd4TWJVNTJZbFJCY2tKbmIzSkNaMFZGQ2tGWlR5OU5RVVZKUWtJd1RVY3lhREJrU0VKNlQyazRkbGxYVG1waU0xWjFaRWhOZFZveU9YWmFNbmhzVEcxT2RtSlVRbUpDWjI5eVFtZEZSVUZaVHk4S1RVRkZXVUpGTUUxVE1FNXZWbGhvVGxaRlJqUlVWM0JHVFRBMWNWWlVWazlTUmxWNlZGaHdUazVGTVhGU1dHUlBWa1ZXVkZORVNtOU5SMUpKVVc1d1VBcGhWbFkxVlcxc1ZtVldTblJTYlhCYVRXcHJlRmx0TlZObGEzaDBXa2hhYVUxdFVucFhiRTB4WVcxSmVVMUVRMEpwVVZsTFMzZFpRa0pCU0ZkbFVVbEZDa0ZuVWpkQ1NHdEJaSGRDTVVGT01EbE5SM0pIZUhoRmVWbDRhMlZJU214dVRuZExhVk5zTmpRemFubDBMelJsUzJOdlFYWkxaVFpQUVVGQlFtNXZiWEFLTjA0MFFVRkJVVVJCUlZsM1VrRkpaMDVpTjI5elRHWmFjM1U0VEdGS1EzUTFSRTlyUVRGc0t6WnJORXd4ZDBOU1NHWnFkeTlEZDJzd01tTkRTVWRRTmdwdU9HUTVWbEp6U1RreU4zaHVTM1YwVmk5WFZFRjNOV1E0YjFaaWIwWjVWamxuZDAxU05qSnlUVUZ2UjBORGNVZFRUVFE1UWtGTlJFRXlhMEZOUjFsRENrMVJSRXh0YUVWaGIwSnpXV042V1U5bWVrZEhPWE0yTW1FeVJYZEtWVFZzVlVadFMwOXVOMjVJY21aRE5qVk9jREU1UTBaVVJuWkNNakJMT0VKbVYwTUtURFkwUTAxUlEwbzFZWHBJVlZnMGNDc3ZiWFZRTkUxb1oweHViRk15UmtoRlUyUlJjSGt5Wm1kbVRGWlRLemMyTjJGbVIwOTJiamhqVkVWeU1sa3pjQXBrWlhkSWJFZFJQUW90TFMwdExVVk9SQ0JEUlZKVVNVWkpRMEZVUlMwdExTMHRDZz09In19fX0=",
  "integratedTime": 1780426075,
  "logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
  "logIndex": 1704965864,
  "verification": {
    "inclusionProof": {
      "checkpoint": "rekor.sigstore.dev - 1193050959916656506\n1583066104\n7HToZYWgqzclRbDUaR9uec7V+QT7clkl3DY33eSlenE=\n\n— rekor.sigstore.dev wNI9ajBEAiBz4eeo3g9VomfGFtjTzzGZqUuh8R7Yq7O9YdCoPJVI8QIgG8mkWmyxs7ACAJEngPpjIv/2Jg2bMj2R9R2EHkkJuf4=\n",
      "hashes": [
        "90db2419c22061a02ec1542837257ccefb4b640c5d2a285c9505a58569662be3",
        "1cd2205d029b34f8e7a9fcaa6f30117c9448b483ca88f67b02ca19ea34f39397",
        "3267d98fc9ff9dfab78449be97eda545ae651bface907e02e98d5ba3324b141b",
        "608ebb24ab17460c8a45303aa9021f16c26ab310f1941ba4cade3fafe1e80364",
        "132ac8d83d2362aa7e2130e8ea7d9cbab3ba7531976e076e1b17319f869a5195",
        "95f55d077ae8d5c043919b7395ef15cfb3f67d3db75f3692e801e2252f5fd294",
        "8a3708ca4f3d1f309a4fd10ae7804cb9590d71830913946756e476c7557ce308",
        "0499dc04eb6ebfaeddfd6346119e7bcb3a9be6bb65f56818a12b0f693866c3de",
        "6a59b08e4fe1acc37de97b6cea1fc662a3ba9fe659386ab83d2da39919cc8319",
        "935d75fb94960a43536a4c2dbd6a1ad9a120de63a27da929541e56c9bf76e26e",
        "c69225b3f734726e24eed4d8e59985c1d436020dd0f8b77770e79f6821a29289",
        "8abb3632cac6077604da87e92af88517a99768671ff81c2bae8e36aec71ee3f5",
        "60576970a93393d514596ef158ebed850af1c3894d2ec3baea9cdb09a05729dd",
        "bdf4ed8293a9f27f08bb2ebf7ee720c407b1c4d3ced0d7c84d75f3bfc10d7058",
        "2f4ac45be745cd983585316ed2bef22c5586f13f85bfd87142486b0aad9c7302",
        "e40597e62a40de2b1861582fd4e50bae89bdf51e76d671518bbc6d69b827276b",
        "4e4025544bd93d6becb56a361317f1c1e7be86b72a71a855a9a85e705b8ae182",
        "8f5ac25f542e51da1fcb2c4380290f51ca67bb101961475f60c768dd390544c7",
        "4a8272e8df7b8ac60731625fc3715a78f76ee5d6167827d7a1b1f9fff24da7ea",
        "9c0495eb7d6dee063119880e253aed49a9825a7bd856d2c0ab3bd4e17feb6a90",
        "35291f8eaa2c8dc6e3b884d147793efb708a2c3aa5fe16a8e0c53272f76b3177",
        "867fa9a6eeefc254828bb5b52f967be746e901dafe5940092d25276fca8bcb79",
        "af99e7f7e99b81440be26f2779383f5e362475fda10ff72f64cb0d47fbf47015",
        "793f85e3bd60d8725f778dd4e23e0bd4f20192de2b2db1d077fa4e47fae594ed",
        "0ce09ea12328bc8bcb13192122f8aca30f40b8d5e0796b3810293247a11ca985"
      ],
      "logIndex": 1583061602,
      "rootHash": "ec74e86585a0ab372545b0d4691f6e79ced5f904fb725925dc3637dde4a57a71",
      "treeSize": 1583066104
    },
    "signedEntryTimestamp": "MEUCIQDxTqeJakhH1Gy5Nk4p9GYn3Sc8kUjOhhmQu2F/Oh6MDgIgNyXlxZpuCdycg+/y8Am7SsjmErzR0LeZSe2117DQrVM="
  }
}