Add gha for tests, dependabot. Fixes #28, #97. #100
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
Apr 5, 2024 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 494083075989341311943389227351549296760962897634 (0x568b738da7eaa765761a926e1ebbaaeb507356e2)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Apr 5 10:14:23 2024 UTC
Not After : Apr 5 10:24:23 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
96:6b:f0:0f:1b:69:4c:b4:e5:a5:45:8f:e8:67:f6:
1c:dc:42:73:ed:84:7d:f6:68:1f:01:9c:37:2a:60:
9c:e5
Y:
9d:c7:db:1f:a7:4a:10:c3:2f:71:4b:ab:c2:a9:5e:
bb:47:5a:37:1a:ca:48:d8:a6:47:2b:ac:3f:54:b1:
94:e6
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
8A:E3:2B:6F:A8:2B:6F:97:2A:57:34:B3:14:DD:6A:88:49:91:DF:F5
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:vaikas@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHsAeQB3AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABjq3AlGAAAAQDAEgwRgIhAOnpfdDdtO6sLoeZ1Nn1q+waESXfU1st+2pV/X4ktx9FAiEArtnbfIo91ZhlJLR+L3FlE3OD4qNOG3pszUfYW+COlpA=
Signature Algorithm: ECDSA-SHA384
30:64:02:30:1b:e9:01:e8:50:7b:93:21:af:b4:39:9a:8a:f7:
26:fc:47:d4:6c:b6:17:2d:ee:db:09:cd:7b:dc:3a:53:4b:f5:
87:b9:23:84:39:d2:1b:42:3a:4c:55:1b:dc:a9:1f:d9:02:30:
1a:47:cb:7e:e0:5d:a7:26:34:f9:3a:d9:73:4f:b0:8e:39:96:
e4:a6:cb:97:5c:d4:3b:c7:cb:0b:29:96:66:f9:61:ac:02:88:
30:90:f0:47:e8:f0:12:4f:1e:fd:96:62
Rekor Entry
{
"body": "eyJhcGlWZXJzaW9uIjoiMC4wLjEiLCJraW5kIjoiaGFzaGVkcmVrb3JkIiwic3BlYyI6eyJkYXRhIjp7Imhhc2giOnsiYWxnb3JpdGhtIjoic2hhMjU2IiwidmFsdWUiOiJhODg0MDI0ZmUzZTYzNDZkMzU1YzU1MWFjNzJjNTNlMTM2MDUyMDA4ZDcyMWNiODdkYjdmOWVhMjU3MmRjNmQ1In19LCJzaWduYXR1cmUiOnsiY29udGVudCI6Ik1FUUNJR0oreGJtWnZ1YUkwWVBMUk82UlpWeDI5MlhzeGpsVTJ1OVVEQ1ZacThTUEFpQnBCeTNqWWRJMGk5czZPT3ZUby9WVnVENFp0VlEzWUJqWVZvbUJwYnFlWWc9PSIsInB1YmxpY0tleSI6eyJjb250ZW50IjoiTFMwdExTMUNSVWRKVGlCRFJWSlVTVVpKUTBGVVJTMHRMUzB0Q2sxSlNVTjZha05EUVd4WFowRjNTVUpCWjBsVlZtOTBlbXBoWm5Gd01sWXlSM0JLZFVoeWRYRTJNVUo2Vm5WSmQwTm5XVWxMYjFwSmVtb3dSVUYzVFhjS1RucEZWazFDVFVkQk1WVkZRMmhOVFdNeWJHNWpNMUoyWTIxVmRWcEhWakpOVWpSM1NFRlpSRlpSVVVSRmVGWjZZVmRrZW1SSE9YbGFVekZ3WW01U2JBcGpiVEZzV2tkc2FHUkhWWGRJYUdOT1RXcFJkMDVFUVRGTlZFRjRUa1JKZWxkb1kwNU5hbEYzVGtSQk1VMVVRWGxPUkVsNlYycEJRVTFHYTNkRmQxbElDa3R2V2tsNmFqQkRRVkZaU1V0dldrbDZhakJFUVZGalJGRm5RVVZzYlhaM1JIaDBjRlJNVkd4d1ZWZFFOa2RtTWtoT2VFTmpLekpGWm1aYWIwaDNSMk1LVG5sd1oyNVBWMlI0T1hObWNEQnZVWGQ1T1hoVE5uWkRjVlkyTjFJeGJ6TkhjM0JKTWt0YVNFczJkeTlXVEVkVk5YRlBRMEZZVVhkblowWjNUVUUwUndwQk1WVmtSSGRGUWk5M1VVVkJkMGxJWjBSQlZFSm5UbFpJVTFWRlJFUkJTMEpuWjNKQ1owVkdRbEZqUkVGNlFXUkNaMDVXU0ZFMFJVWm5VVlZwZFUxeUNtSTJaM0ppTldOeFZucFRla1pPTVhGcFJXMVNNeTlWZDBoM1dVUldVakJxUWtKbmQwWnZRVlV6T1ZCd2VqRlphMFZhWWpWeFRtcHdTMFpYYVhocE5Ga0tXa1E0ZDBsM1dVUldVakJTUVZGSUwwSkNhM2RHTkVWV1pHMUdjR0V5Um5wUlIwNXZXVmRzZFZvelZtaGpiVkYxV2tkV01rMURhMGREYVhOSFFWRlJRZ3BuTnpoM1FWRkZSVWN5YURCa1NFSjZUMms0ZGxsWFRtcGlNMVoxWkVoTmRWb3lPWFphTW5oc1RHMU9kbUpVUVhKQ1oyOXlRbWRGUlVGWlR5OU5RVVZKQ2tKQ01FMUhNbWd3WkVoQ2VrOXBPSFpaVjA1cVlqTldkV1JJVFhWYU1qbDJXako0YkV4dFRuWmlWRU5DYVhkWlMwdDNXVUpDUVVoWFpWRkpSVUZuVWprS1FraHpRV1ZSUWpOQlRqQTVUVWR5UjNoNFJYbFplR3RsU0Vwc2JrNTNTMmxUYkRZME0ycDVkQzgwWlV0amIwRjJTMlUyVDBGQlFVSnFjVE5CYkVkQlFRcEJRVkZFUVVWbmQxSm5TV2hCVDI1d1ptUkVaSFJQTm5OTWIyVmFNVTV1TVhFcmQyRkZVMWhtVlRGemRDc3ljRll2V0RScmRIZzVSa0ZwUlVGeWRHNWlDbVpKYnpreFdtaHNTa3hTSzB3elJteEZNMDlFTkhGT1QwY3pjSE42VldaWlZ5dERUMnh3UVhkRFoxbEpTMjlhU1hwcU1FVkJkMDFFV25kQmQxcEJTWGNLUnl0clFqWkdRamRyZVVkMmRFUnRZV2wyWTIwdlJXWlZZa3haV0V4bE4ySkRZekUzTTBSd1ZGTXZWMGgxVTA5RlQyUkpZbEZxY0UxV1VuWmpjVkl2V2dwQmFrRmhVamgwS3pSR01tNUthbFExVDNSc2VsUTNRMDlQV21KcmNITjFXRmhPVVRkNE9ITk1TMXBhYlN0WFIzTkJiMmQzYTFCQ1NEWlFRVk5VZURjNUNteHRTVDBLTFMwdExTMUZUa1FnUTBWU1ZFbEdTVU5CVkVVdExTMHRMUW89In19fX0=",
"integratedTime": 1712312063,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 83586791,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 2605736670972794746\n79426937\nuqyCzEaPhqBn12L/s6wSTtEYlDiWqLzoqBPlqNaQU1k=\n\n— rekor.sigstore.dev wNI9ajBFAiEAzYOfjLdOl7v4GaHdLLWyxkhgS79E+F2uPZf/gTujqN8CIF1E+LKI3ZVvj7LTRntWTBU8FiiPHmblPws3E//I6rP3\n",
"hashes": [
"c9bd67ee49dddcf223e8d26451a7854fe8712bd023e809cfd85a8da2c48d1d3f",
"c532925888e5c50e4dbdcaae68998998fb09bdc84369c08ce3df27ad6d66cc65",
"d904c944d33f242c1df0bab9f043272c4c0f33681d1f3e82e801a40f0bc451af",
"aba535da91c236bf864061562f74ece3e8b783e5b519d5957d858584241aa7c5",
"2c3beaf0925ac455d1e155893cd3f533c31b24ea1bc68660bb4976b560710a53",
"49665406158a1bcb92a5b5af04765016ec764c475a30499f47f897ab4f37339e",
"5a9d23ae8d6021d33d30ef6b9be6d0bbb54a2e78fb64191aee2680e423acab8f",
"ca7ab74aeea35d29f3bd854cfa045fa33c76095ed2a268e5c1ff1f2b3653ad82",
"2a43046ec577334b41bc274258f79884909afef3e7c69083b45087bf161f850e",
"53f58eacaa0707cb3dfd2b62e9c64e71ebae60453070bf9d9a8ada3a0250b376",
"145fce2b4752768f0b9ccf9a63c18dbc3b4235e71f4c989d1986fc58dd24904c",
"f64b5ad1ba8a93a289d7ff3f9358ac9d6a9e2465b57155307b91b7896d635448",
"679db2f203cbf5a8ca3c81f62acc325a754f8cd934e307dc4f770ea34fc8df2d",
"e0c2e386f7e4a6f385fd486608b9393c00109ef037eb490d472995381898ee02",
"cef9ea86edf66c5e015a7217e001fa50bba408b4e5817b1e22c30791b1cc3c39",
"3f3fc6762d9d7b2c2fb3edc820c52f6bd7616f996c24bf6039ebeb5754f0a38f",
"f94b766df394d46e00785274eb74d69fd2c376aa0cef68c85335e809b859a5fd",
"8a17f3b89a751d07c2c1940f4bcdf542f3941060b3460c470df76e8e28214698",
"82b7b437ea126db54c914f863b483db28335388cad05a4e91519fd56f1db2cce",
"42a1f6b491b7c99a98bbeaf2bc015a9b210a92b0a432b006979cc8f795d28952",
"f08eb1cffcc1c70482c572b623b0c680da59d4173b6bf4a8a1417e1b0dd05ecd",
"0c60918bcf6f554648566bcad8014e99e32a101ea7f91f7a65efaf8d601906fc",
"f7c7a7ccc682fb1e6808cbc8650039cfcbeed9aa4330216f13ff77e4d7ee3f0f"
],
"logIndex": 79423360,
"rootHash": "baac82cc468f86a067d762ffb3ac124ed118943896a8bce8a813e5a8d6905359",
"treeSize": 79426937
},
"signedEntryTimestamp": "MEUCIDUk83KgIvAENHcTlh6T6SYZnFTa8scplZW7bAM6IkOHAiEAjWOMEHS0qvbIetkc7hJi2O4B9R1iujELn7/Yj6kgx6I="
}
}
Loading