fix: improve JSON/YAML diff output; fix upgradeRisk edge case #1433
Chainguard Enforce / Enforce - Commit Signing
succeeded
Mar 20, 2026 in 0s
Successfully verified commit signature.
| CLAIM | DESCRIPTION | |
|---|---|---|
| ✅ | Found Git signature | |
| ✅ | Validated Git signature | |
| ✅ | Validated Rekor entry | |
| ✅ | Allowed by policy |
Details
Certificate
Details
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 330002988140158226918446766662281949288823627452 (0x39cdd884c877a89ee21c6edb75c80e2452599ebc)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Mar 20 21:54:54 2026 UTC
Not After : Mar 20 22:04:54 2026 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
9d:d5:ae:b9:b0:4d:fa:80:a7:86:ee:f1:86:46:3c:
d4:68:f3:67:5d:49:5d:07:40:52:b3:bc:1b:31:fc:
0e:65
Y:
d3:60:30:c7:e5:a0:61:ec:0d:ad:53:ae:e5:2d:15:
05:d5:df:70:16:a4:4f:29:3f:b7:bd:20:19:53:44:
e9:4d
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
B0:35:2A:14:17:77:8F:FB:4E:86:1D:DC:F1:09:71:A1:29:3F:CE:7D
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:evan.gibler@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABnQ0+heUAAAQDAEcwRQIhAOoUlBwtLdX+z8mz6Mq3GWtT38Kl+4iuSFE0dPVyH+DMAiB2m9HjgQDb4llV6GmWpJLUCWmRkPNSj8I6gzggqJ12XA==
Signature Algorithm: ECDSA-SHA384
30:64:02:30:20:45:22:96:55:b4:f3:ed:f4:e5:af:c6:08:da:
98:b2:24:04:46:ce:67:42:5a:ba:92:d7:4e:8b:cc:12:6f:76:
ac:79:6a:0e:32:85:26:57:fe:2c:c3:db:06:e8:f6:0a:02:30:
24:9c:5c:2a:00:b2:3c:ce:b6:c3:2b:dd:e0:39:42:35:17:e5:
4a:b5:64:b7:eb:32:29:5b:68:89:b5:fb:a6:ac:d6:c0:da:e0:
a2:fc:e8:d0:63:88:47:6a:d4:26:d0:86
Rekor Entry
Details
{
"body": "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",
"integratedTime": 1774043694,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 1151137467,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n1029330747\n+4SkNhPtDj5l+kHl2jQozm1PXbNXQ8gpKAzq/W3YGfE=\n\n— rekor.sigstore.dev wNI9ajBEAiBQmuH1vxqOu16dAljf4z2c/mVA81ZP2/vxoCSf+ByrcAIgGZtfgZdGAr0qEVCeOQxllLmiNRvC4OPyTOtc8Blx7fM=\n",
"hashes": [
"037615925e153c7221bade498f5a274257e562df48b158905301d0641df1eef4",
"67e33a379e703e48ae04d0591c97f395ef828242fdf1929fc73d6cc04162c4a9",
"b33fdd7f252eeb209091b214bea07ce089f86d5eff5669e715335bb8ef07d767",
"642ffab435e864e75b935d713d8066ce55eab490877eb591f070d1650e4dd397",
"eb18d1f39fd29744589fe1ba1f819ab414c7386ce6e6497e14acb2a574440f3b",
"1af3ee64957adc5afeb5a2513927ce802a9247de3727ad3f36accd1908060085",
"9260c38eab7dfa02b9f76d7897c7d734ca8802c734cae35d5bf229a3596f001b",
"f98ab38b48defaf86195591cf6aad0e89071be3bc8c839c5ba9fa5049c18419b",
"cee988389469b7a2d3f03467e36925ccc7c07344da92e10473870913dd8fbe58",
"2b818e72c7df7a92485ef0738b7965826e02efe86cf13a06a4f1822398acb077",
"2cced3e786efe92f7a2a9f996ef93977497995b8f18c2c977e2c8676a67f1d0e",
"9a113831a113853cf713160593e6aefb79365456a0b247db379fad8656403074",
"28479f184ef49938f9adda90cb54e05e2bd5795944c6f56e373809588c878fbd",
"3a94040d7ad56ac6a58175860ea3a8b0dbd4435891c4148f35863fe7da08d62c",
"08adeec687bbdee61c81069e8d12b37337fdbf86a60d850db65b710ac10a641e",
"97ac066c3c9617c4582bca655133b9bae4a65edb063947dc7f890302d1aae4b8",
"c9ed3ce056a8ed56b6f814dffb7013742177bfec13b0a114e0c0ad910e435ab1",
"593e43410ff4e4c37bba0e675cad3f3dc8c5a2952f2cdcd0dd63b600acb33823",
"321d8a186b99092e0666808f205c237ba2bd9cf8354aac9180638ed4c3e4261e",
"8b47a967a44e73bc124625f2c2be435235a68726ed6dc71960344451f08e6f23",
"088359b6c016774dc1267a0a04d245bee1d21a205f1d8712260816b493278a4c",
"98125e5beacb2a924fbb36f658e384018f8c43b43a00773ef55bb2e327fa5764",
"0832c565dcfba7f851f31c04781affd98a8259db38129b1d013780aa47c45f29",
"791940cb71bb420336316a3626bcfaffaa25b53eff1701a21df92989aa004652",
"7cb02f138e8da82555f3a129076a4a9302651638c593b9ed5f7942f8f899b88a",
"4f80ea583e36840b4dfaf5fc8ca096aa80b899e13825e908f4bc5818270fcb53"
],
"logIndex": 1029233205,
"rootHash": "fb84a43613ed0e3e65fa41e5da3428ce6d4f5db35743c829280ceafd6dd819f1",
"treeSize": 1029330747
},
"signedEntryTimestamp": "MEQCIECsFMLHwPDUs6P+56OndRp+1vX9EBZxs7uDF5u/ZekzAiADEV3Cw+PDTEbnjaI/x0x3D8GQbJo/ywsD2RYoYD1Y9w=="
}
}
Loading