Hide noisy error logs; final rule tweaks #977
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
Jun 2, 2025 in 0s
Successfully verified commit signature.
| CLAIM | DESCRIPTION | |
|---|---|---|
| ✅ | Found Git signature | |
| ✅ | Validated Git signature | |
| ✅ | Validated Rekor entry | |
| ✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 669317998840187597663871533132195359084042380552 (0x753d41d059cdd95fb2b8311ea07b54f8f9ade508)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Jun 2 23:10:48 2025 UTC
Not After : Jun 2 23:20:48 2025 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
e8:21:43:72:02:e2:81:dc:40:ea:c9:2f:e4:6b:76:
eb:d9:d0:fc:b9:7d:41:6d:e3:66:1b:c3:9b:80:0c:
c3:78
Y:
c5:f5:63:fc:e5:4a:0f:f9:83:4c:66:8b:2b:fa:7f:
32:05:12:95:a5:ed:aa:80:b8:b7:7a:fa:39:25:aa:
d4:ca
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
FD:2A:9D:B5:0C:05:72:48:6C:09:8A:FD:11:6A:78:FC:D9:FF:2D:B2
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:evan.gibler@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHsAeQB3AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABlzLpbPcAAAQDAEgwRgIhANnj1UCiJ3bfoY0g/WqS2zOclQiVtwts62hNhR4EZDseAiEA/43xbe/OzHVEbGNicrySwL5IBX09oFUeIKH4e5N+zaQ=
Signature Algorithm: ECDSA-SHA384
30:64:02:30:77:80:bf:9e:3c:0d:22:37:2d:01:3e:32:5e:85:
2e:5d:86:7d:ff:e1:dd:a4:2d:74:8d:c6:f9:1f:46:f8:cb:e8:
95:3f:39:85:6f:e7:15:b4:bc:fa:b9:1f:59:cb:84:1b:02:30:
72:41:d5:f9:27:5d:44:0e:3e:a4:ce:cb:1d:44:1a:f6:e1:cb:
f7:dc:51:d0:75:88:3e:a2:4b:1f:2f:ac:b4:6a:15:e0:ca:1a:
d0:98:c8:5c:27:e3:f6:21:1d:2b:a8:28
Rekor Entry
{
"body": "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",
"integratedTime": 1748905848,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 227842089,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n105943761\njY2pTbkmgifS9iPQ1pFWOVhMjahVmB2urYWbPM5dwpk=\n\n— rekor.sigstore.dev wNI9ajBEAiBb3Yfan9i5wwuSVyQHep/HlV+IeEzndfC2VusV09WAWAIgEiGykCSCRma1eywEvWXXNa22BwEsujBeTLer+7YuUAw=\n",
"hashes": [
"ab76b3f74b821f5930984dbc0335bd30d514c3c9c79127cde5db89895bc3eff9",
"73980ced451b925dfe65a4e4ae52b43580e8a07a015bbb7fc9e876686a5cb05d",
"1f4eb609657f6fba9ba0fb41164886cb05c03c708b348a20bfd25c5d4e86626b",
"4b80f43718532a8f38c5289855c15288fc0acc366cc00ff9fe280c1605653a35",
"f33573bbc5e2ca09d58948f710831be66424d36f285ef327fd0a2b753f5df4bd",
"6d9009f430cf22bf63cc57d8c80ee04b085417898dac7dcc3e9692dd537e7a87",
"af5444e0eb87816cabe1d52c94031596c444fb23f2caed4410d4aa7eb07ae2b2",
"a399d05dabc5c958742c109b0346890829e1464a1394067dca4b1e6f04c1dfc6",
"bdf05b1a3727400fc4d03a9ae089f640576e8b884d571d520081f4f50ca704ca",
"724670c44e0ca2a365c44731740567d719785a62435cca6d1de5b89df44b579b",
"91a7c51ad24ffd43c1b75d12e3cef7ed4bf16f0bed1bcb4bc9a4f66528d4d8e6",
"a0dc87b291d4713db700a10a5cb6703bb929dfb642241cc8255f6f5f32c14425",
"dc0ddd1d20e040e28888af90485b806e4acc2db8f6a6220c246ba6b48a31503c",
"1f34e2a5a616b0ca4b31166fde6c74e06dc52bc627a512707c0f84f4198513f0",
"1eb44c155219302df190c1ba277fe7d2e5bde081f05c5919568386676827b2d1",
"9dee0e22307be0dc1e5de11ea69203a08c219752d942b98fa04886688a013b2c",
"71dca9572ce6116aa5ee484130fd8a499aed1649b09297f9c06d0864f8fa123b",
"55d38ace9421265a578228f35c035ffe13658ded46fcdd6452e56728db2492ca",
"9ad6b97c7fe0170c49ff47d3f321a99f7b05098d06d51639e7921f966d0b2273",
"eeff2a3c73432deae976e68cc74e9e6ff3308284307334e7fdc606297ffdc19e"
],
"logIndex": 105937827,
"rootHash": "8d8da94db9268227d2f623d0d6915639584c8da855981daead859b3cce5dc299",
"treeSize": 105943761
},
"signedEntryTimestamp": "MEUCIA2eebVmfDECagJA4cz1ljixqFbJPgC3KbYjEMM0QQsgAiEAv9D63aATHKjJ5loIPFK+nRPIuKwCv0B63WXBUToTmbM="
}
}
Loading