Add rule for recent Crate compromises; run fmt to pick up new yara-x newline formatting #1140
Chainguard Enforce / Enforce - Commit Signing
succeeded
Sep 26, 2025 in 1s
Successfully verified commit signature.
| CLAIM | DESCRIPTION | |
|---|---|---|
| ✅ | Found Git signature | |
| ✅ | Validated Git signature | |
| ✅ | Validated Rekor entry | |
| ✅ | Allowed by policy |
Details
Certificate
Details
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 374939268412330151952054384127288202539988316408 (0x41acdbb7cce2fd9759134b622aca970b53fa70f8)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Sep 26 18:43:27 2025 UTC
Not After : Sep 26 18:53:27 2025 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
ae:ca:b2:9d:cf:1e:52:27:7c:4f:6d:6e:62:69:42:
0a:4e:1b:f8:49:a8:2e:04:70:24:97:22:7a:75:3c:
13:af
Y:
55:04:b5:44:f6:b0:c2:bb:bd:f4:22:d9:bf:d0:06:
b6:76:d0:6b:00:e6:79:2c:6f:58:cd:3f:54:61:36:
2b:95
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
A4:40:01:60:18:7D:B1:E8:2E:33:C3:66:5F:34:4B:3A:B4:2F:CE:54
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:evan.gibler@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHkAdwB1AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABmYdWW/YAAAQDAEYwRAIgXRRFXoaecMSwECIVgdNmg8+NBsEzClA6kptem/BWAl4CIA/dCUNQYxAbsdOJ/Ri7dtruz4TyWuLtZ/VShHoGhSXQ
Signature Algorithm: ECDSA-SHA384
30:66:02:31:00:9b:d6:be:f2:b7:74:34:0d:0e:71:97:6a:cf:
d4:53:cc:72:95:00:cd:fe:4a:bd:38:70:7d:c8:9a:19:65:57:
62:2d:ba:0a:b3:bb:86:0a:68:ee:41:6d:37:5a:4a:87:bd:02:
31:00:e0:10:30:5b:e7:d1:b4:9c:e5:ea:ba:4d:c6:16:5f:f5:
b8:82:6a:81:a6:af:86:99:3d:00:08:e0:9f:c6:98:00:95:2a:
ed:e0:f2:b4:a0:e3:6c:d7:4f:e3:6c:c1:c8:a0
Rekor Entry
Details
{
"body": "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",
"integratedTime": 1758912208,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 563997274,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n442168078\n5purxelhasSCpoAdn2d5BWD06XwxO4N+vHZLVptDRXM=\n\n— rekor.sigstore.dev wNI9ajBEAiB0q9cAJDQT91NUUwpE4FNIahA5N/O2neUQys+ENVceVQIgFHVUY0pXWQtIDnp/GNsfgEZI3HknbGmoci5FYu7L5l0=\n",
"hashes": [
"93d65d6cd90721a030c1e6c960fc862ac82368ea63f107db9a8c9758ea96065b",
"ded58bf3d014b6e3e5c22cad44a44ca7ed0b0293270684d25333ecc863ce51f5",
"ee6c0fa4a00bc567d7221c6dd1ac6689c1c37dd30b39229e761fa3920a49ddcc",
"8038577aeb70d4ede4188a529cbaa106a9e09ea04f0a8587fd99b248595472a0",
"7f069b5b6d93ffee63b74d850e7fc5b709de084a5080422d99c2ad4a2b907788",
"dacf6ca246458945d5cbcc9f6ee31724731b3baca42c66e8d5e7291816bc5d08",
"c146ea4a2e8d5875d6b919e9902c3a754e66f6d921ce79d09f5c441ba893bda2",
"b65f6fd139a04f38fab5e950e4946373c34457891ced4e7e439ef5eee5ee384f",
"0b9850e0caac25e0d4f6927d94d9eef63ce4c96d9b1d73fd1a51630b9c67a3cf",
"651958101d114b9195e1f7e25fd5f906854cf5058334e5c98645f4b3feb3c5f5",
"67547c4ecf8bed65bc71a737000483166f59e47883000aaf5a900428e06466c8",
"27ea606802451c268f76658a9c3dbc316e5351d8d0a74a9510ba8f9e84078777",
"b8d69a153e52a82e61aca2e6313a3abf2357b698150a84adc854938996cdbafa",
"ab05444ad8b10c768ce6bab2d49148ff4361cd7b34a372203caf9a25d28dac6d",
"0a6e28d33a2ae925f955cdfff88af938ba810c3cd282c7482ac0a5010b261eef",
"6b1c3ce6aa600d8ac166a2f188aa0d75ca390ff20efbf07f4bfe9b36eb047b9d",
"c2f03aaf551f62b8807734507cbf0f851d918338c037861a882774d2f2871fde",
"f634e4fde551692619c6bcf3a335f0589b08a9c5e15340eba91a23ddc468f453",
"5ee27f843e96dc3b4724095ffdf83dcce85beba7e833b101245a0c697b913caf",
"8f7587f2fde125790bba4f41d010f2a48c274f695752251800131fe49cbc96b0",
"69f93e7317170f5adf4948679a8cecc8539e7ce805f958b8e2db7ee6d9846341",
"fdbba1ecdc9e51d0a024f75a31b4c0b62429324347864fb132c236b2191389e3",
"d667f2f782a9708b6ab211fdfa0c2a57a8dc72ea5c68ca55b05dbc35ec3ccc36",
"bd2ecee28cc72106495818a8bfe9a4a48dbb184f3302654212445c3f7343c8d1"
],
"logIndex": 442093012,
"rootHash": "e69babc5e9616ac482a6801d9f67790560f4e97c313b837ebc764b569b434573",
"treeSize": 442168078
},
"signedEntryTimestamp": "MEUCIQC7y08f3iRIYANJhoaDohcOac63qvNHKJ2nuQTRNqHs7gIgHSmACSZCrb4jOFnOtr2hB73+GAPL79De/RRqaTO+6w8="
}
}
Loading