Skip to content

add more third-party rules

b0fc629
Select commit
Loading
Failed to load commit list.
Merged

Update third-party rules as of 2026-04-01 #1447

add more third-party rules
b0fc629
Select commit
Loading
Failed to load commit list.
Chainguard Enforce / Enforce - Commit Signing succeeded Apr 1, 2026 in 1s

Successfully verified commit signature.

CLAIM DESCRIPTION
Found Git signature
Validated Git signature
Validated Rekor entry
Allowed by policy

Details

Certificate

Details
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 140602850606367219103549164745210370956620692091 (0x18a0d9917e44c3d153973039fe79e89059f37a7b)
    Signature Algorithm: ECDSA-SHA384
        Issuer: O=sigstore.dev,CN=sigstore-intermediate
        Validity
            Not Before: Apr 1 12:51:06 2026 UTC
            Not After : Apr 1 13:01:06 2026 UTC
        Subject:         Subject Public Key Info:
            Public Key Algorithm: ECDSA
                Public-Key: (256 bit)
                X:
                    da:e3:51:51:9f:8f:98:ad:3d:7e:80:68:c1:f7:98:
                    f8:cf:2d:f3:9f:a6:dc:d5:99:35:d5:61:f5:10:02:
                    4f:24
                Y:
                    3f:4f:71:12:19:0f:be:7b:a0:36:e8:99:3f:2f:cd:
                    8f:53:ca:d7:43:9a:60:32:78:11:f6:dd:ce:12:04:
                    f1:e1
                Curve: P-256
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature
            X509v3 Extended Key Usage:
                Code Signing
            X509v3 Subject Key Identifier:
                BB:C4:C4:65:9D:7E:DF:63:5D:86:F7:41:3C:27:3E:89:E3:19:FD:69
            X509v3 Authority Key Identifier:
                keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
            X509v3 Subject Alternative Name: critical
                email:evan.gibler@chainguard.dev
            oidcIssuer:
                https://accounts.google.com
            Unknown extension 1.3.6.1.4.1.57264.1.8
            Signed Certificate Timestamp:
                BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABnUkY9yEAAAQDAEcwRQIgWhFjQ507pK/hPw1fL2mnIU1mCqMVfegFL5LSNQkxYcsCIQDv1zX6GK9my+yE1QyBo0D07Yc+Kqd8k3oBxBux/ejoTg==

    Signature Algorithm: ECDSA-SHA384
         30:65:02:30:6c:4a:0e:bf:11:b3:ea:cd:d9:71:62:e3:89:1c:
         46:84:10:b9:41:39:a8:a1:e3:af:b5:42:31:84:85:1b:dc:3a:
         9b:bb:99:02:fb:85:41:43:0d:d9:43:55:ca:46:69:df:02:31:
         00:bb:6d:e2:07:dd:23:5a:0a:9a:4f:8f:66:c4:0b:40:df:d2:
         7d:06:e3:ab:0a:2b:0d:c4:f6:78:91:57:d6:02:d1:c4:9c:7e:
         89:c2:6b:a7:8e:ad:e6:65:6f:fd:9b:fa:77

Rekor Entry

Details
{
  "body": "eyJhcGlWZXJzaW9uIjoiMC4wLjEiLCJraW5kIjoiaGFzaGVkcmVrb3JkIiwic3BlYyI6eyJkYXRhIjp7Imhhc2giOnsiYWxnb3JpdGhtIjoic2hhMjU2IiwidmFsdWUiOiJlNjY4OTg1NDgzMzRiNmI0YWJiZWNjNWY1NWE0YmIxOWEzNzZlZjhlMzYxNjk3NzRiZDQ0OWMzZDg5YjkyYjRhIn19LCJzaWduYXR1cmUiOnsiY29udGVudCI6Ik1FVUNJRE9NWFd1N0lncWtLQk4vK2FTSE0yWGNXTXBZSGh6YUdvSkFDVUNNc243YUFpRUE0VDM1Wkk0ZVF6ZnllZmFMS1FzU3ZRSkxWVHZmdXBIdWEzdENMenArbXNrPSIsInB1YmxpY0tleSI6eyJjb250ZW50IjoiTFMwdExTMUNSVWRKVGlCRFJWSlVTVVpKUTBGVVJTMHRMUzB0Q2sxSlNVTXdla05EUVd4dFowRjNTVUpCWjBsVlIwdEVXbXRZTlVWM09VWlViSHBCTlM5dWJtOXJSbTU2Wlc1emQwTm5XVWxMYjFwSmVtb3dSVUYzVFhjS1RucEZWazFDVFVkQk1WVkZRMmhOVFdNeWJHNWpNMUoyWTIxVmRWcEhWakpOVWpSM1NFRlpSRlpSVVVSRmVGWjZZVmRrZW1SSE9YbGFVekZ3WW01U2JBcGpiVEZzV2tkc2FHUkhWWGRJYUdOT1RXcFpkMDVFUVhoTlZFa3hUVlJCTWxkb1kwNU5hbGwzVGtSQmVFMVVUWGROVkVFeVYycEJRVTFHYTNkRmQxbElDa3R2V2tsNmFqQkRRVkZaU1V0dldrbDZhakJFUVZGalJGRm5RVVV5ZFU1U1ZWb3JVRzFMTURsbWIwSnZkMlpsV1N0Tk9IUTROU3R0TTA1WFdrNWtWbWdLT1ZKQlExUjVVUzlVTTBWVFIxRXJLMlUyUVRJMlNtc3ZURGd5VUZVNGNsaFJOWEJuVFc1blVqbDBNMDlGWjFSNE5HRlBRMEZZWjNkblowWXdUVUUwUndwQk1WVmtSSGRGUWk5M1VVVkJkMGxJWjBSQlZFSm5UbFpJVTFWRlJFUkJTMEpuWjNKQ1owVkdRbEZqUkVGNlFXUkNaMDVXU0ZFMFJVWm5VVlYxT0ZSRkNscGFNU3N6TWs1a2FIWmtRbEJEWXl0cFpVMWFMMWRyZDBoM1dVUldVakJxUWtKbmQwWnZRVlV6T1ZCd2VqRlphMFZhWWpWeFRtcHdTMFpYYVhocE5Ga0tXa1E0ZDB0QldVUldVakJTUVZGSUwwSkNOSGRJU1VWaFdsaGFhR0pwTlc1aFYwcHpXbGhLUVZreWFHaGhWelZ1WkZkR2VWcEROV3RhV0ZsM1MxRlpTd3BMZDFsQ1FrRkhSSFo2UVVKQlVWRmlZVWhTTUdOSVRUWk1lVGxvV1RKT2RtUlhOVEJqZVRWdVlqSTVibUpIVlhWWk1qbDBUVU56UjBOcGMwZEJVVkZDQ21jM09IZEJVV2RGU0ZGM1ltRklVakJqU0UwMlRIazVhRmt5VG5aa1Z6VXdZM2sxYm1JeU9XNWlSMVYxV1RJNWRFMUpSMHRDWjI5eVFtZEZSVUZrV2pVS1FXZFJRMEpJZDBWbFowSTBRVWhaUVROVU1IZGhjMkpJUlZSS2FrZFNOR050VjJNelFYRktTMWh5YW1WUVN6TXZhRFJ3ZVdkRE9IQTNielJCUVVGSFpBcFRVbW96U1ZGQlFVSkJUVUZTZWtKR1FXbENZVVZYVGtSdVZIVnJjaXRGTDBSV09IWmhZV05vVkZkWlMyOTRWamsyUVZWMmEzUkpNVU5VUm1oNWQwbG9Da0ZQTDFoT1ptOVpjakppVERkSlZGWkVTVWRxVVZCVWRHaDZOSEZ3TTNsVVpXZElSVWMzU0RrMlQyaFBUVUZ2UjBORGNVZFRUVFE1UWtGTlJFRXlaMEVLVFVkVlEwMUhlRXRFY2poU2N5dHlUakpZUm1rME5HdGpVbTlSVVhWVlJUVnhTMGhxY2pkV1EwMVpVMFpIT1hjMmJUZDFXa0YyZFVaUlZVMU9NbFZPVmdwNWExcHdNM2RKZUVGTWRIUTBaMlprU1RGdlMyMXJLMUJhYzFGTVVVNHZVMlpSWW1weGQyOXlSR05VTW1WS1JsZ3haMHhTZUVwNEsybGpTbkp3TkRaMENqVnRWbll2V25ZMlpIYzlQUW90TFMwdExVVk9SQ0JEUlZKVVNVWkpRMEZVUlMwdExTMHRDZz09In19fX0=",
  "integratedTime": 1775047866,
  "logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
  "logIndex": 1206075582,
  "verification": {
    "inclusionProof": {
      "checkpoint": "rekor.sigstore.dev - 1193050959916656506\n1084176739\n8PecovWvUgAq+XGfZEplcBe87GvhG5hUBOw69n9PaWw=\n\n— rekor.sigstore.dev wNI9ajBGAiEAwzJ3ucSyJ4j+Zk6+AD8o2IH3zv6qL3KBa3i5lrMwoMECIQDT31IDwAV+FEbM/KPdUtPb5mu8bb3as2Em9KxUKMCHtA==\n",
      "hashes": [
        "97acc32a2e88d48d8480e5d82a32989809ad91318123c5b4165ea7a649f97c0c",
        "3ee39b0130e795c397807534fb8afe47d725a50cc6199a1f5aa56a5b24b893bc",
        "515346bc7357ebeb79b22d07e6287a9c9636e2fd986973ff174054ea1d263aa1",
        "13ba4a419c9c7f5d52581dcaf14fca582b077e4bb77850eecf8c111314d13341",
        "f8fe216573c0ce6eba9ab1106905491f0490f239993d52f049892e44a2f303d4",
        "179b68e2546092babcae8a8e6593f13e4f9ab433190ae4e0095d49cba01fc084",
        "b6e9ac02c9ef70dab074f08cc3e9b8e7b060ffe5d35284dfb5744b3b4e45ec13",
        "2a4726b595dd336e1c2f3b08614d017f8942f37818fb62bd52bd7c6402bbd201",
        "ff44159ab1b108de7f1eea7a1859754d0f00fe5ddac7fc215430442dc0168115",
        "6ff320b76ae4ffcf3532d98c48139e632f4a96fa404f4da88f63ad3c30abf04a",
        "d12fb8b6feb5a679ff44d1cf39c5b3e06e32ba4c0b04d9238dd15336fcb8c4cd",
        "f4d22da34036e890bc6407d7a0be60c1469d476cdec32d73ae5417cadb503caa",
        "e3a247a16b227d9a14004eb979649f6116b7bb5f49cb000523394aa294b36424",
        "2e5468eff94c3d3e62e51b5d3b2a4e215bff1776779fa93afde88250c17daa93",
        "be295c36203328b7fee667ecf11dc3e52e3f61de8326dbf6f7efe21de9ae06e0",
        "ca8afe8e5be7c28877c5468b29549639b3de8eadeca2a49215aaa90ffba16f8d",
        "01ff3bf170288b86f5d752f483ee031398c9d7a802835cf53674b7bbfe2415c3",
        "0da3793b525da89ffcd82ff90b090cef6f0b6a3311362ff2ac60db122f3b3e86",
        "c808a80d79ed89ba6e2c24caf7bd49eba98e761680ab6dc38b0dae1daf3203a8",
        "47ce0f3d818475ab4d36c61ae763b63414d9c248228149c233c05dbc1d635ad8",
        "0ce09ea12328bc8bcb13192122f8aca30f40b8d5e0796b3810293247a11ca985"
      ],
      "logIndex": 1084171320,
      "rootHash": "f0f79ca2f5af52002af9719f644a657017bcec6be11b985404ec3af67f4f696c",
      "treeSize": 1084176739
    },
    "signedEntryTimestamp": "MEUCIQDjDI5kRmKNtPfOwVoQcv93CM89cSztY1Mn9xWpn7jm6gIgPcxGiP1/MLjZ2VwOcBb14TAfRMfvmEKiuOMx1VD9Tfw="
  }
}