new detector: hidden ~/Library/Application Support entries #243
This check has been archived and is scheduled for deletion.
Learn more about checks retention
Chainguard Enforce / Enforce - Commit Signing
succeeded
Apr 27, 2023 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 282197457016565998302047814947397376839882814989 (0x316e2bef59356eedee06a9b0d0048d213ddab60d)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Apr 27 19:07:53 2023 UTC
Not After : Apr 27 19:17:53 2023 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
34:e7:28:c3:78:3a:64:eb:6b:62:9a:7f:51:98:bd:
35:04:f5:53:30:84:0b:5f:d8:1b:e5:4c:cf:37:9c:
45:a1
Y:
34:a1:c6:c2:43:7b:a2:0d:ff:a5:9f:a4:f7:fe:c9:
69:00:fc:8f:71:2d:55:80:ab:ff:79:6d:90:9a:22:
53:3a
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
2D:74:FC:D8:4A:65:25:2E:65:21:2C:3C:D5:69:78:F9:A7:24:73:03
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:t+github@chainguard.dev
oidcIssuer:
https://github.com/login/oauth
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABh8QdZXsAAAQDAEcwRQIhAJgAySS0WEFTLGWMUUJbDI1HXbNejXzle1JuevECrUKgAiBFrNdusYBmFnxXGRzGhfcClw5O+RG0bs7lrz39ssXv7g==
Signature Algorithm: ECDSA-SHA384
30:65:02:30:7d:7a:33:66:67:d8:ae:84:02:e9:c5:3c:a6:79:
15:14:de:65:0a:95:1f:8f:84:36:a4:78:92:88:da:09:5d:b4:
2a:43:11:bf:a1:58:67:19:13:14:0a:28:30:f7:4f:ce:02:31:
00:d4:9e:aa:c8:d0:e8:69:3c:89:1f:86:02:8f:b1:1e:86:44:
ab:9c:0a:fc:bc:a3:fb:eb:4e:53:72:f1:3f:28:d7:28:7f:44:
8f:d3:9c:25:46:ce:87:b7:80:60:d5:ea:85
Rekor Entry
{
"body": "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",
"integratedTime": 1682622473,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 19112480,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 2605736670972794746\n14949218\nOtvEDp3KDg1Qf3XbKaQ4V9zJ+wso3LHZnk7Jf4f3860=\nTimestamp: 1682622510881533796\n\n— rekor.sigstore.dev wNI9ajBFAiBYmKI3c/Xy2EmklBzR/lxiIBRm2aRy+PAjFrrqQsgfNwIhALAsjkuUP/P4vuGUH0iOeK9ofSXr0FmxsHDVT7iEKoOB\n",
"hashes": [
"34436335a4a807ab399557ddfe3132d3181af2c1f380874f03f6eb81fd131780",
"5c63119109feee58f8406d75542680764ff24d2ffc7d8d848b1e4bb62c158433",
"a7a7f077f1195c79f740f373c60104fcfda90ad70d28305c29e89b0f5c37eba9",
"d70404bec4dff5c501ea34458d6b59361a043a9fe2c344e2ad7f14760b02540a",
"f45776fb644c02fc6c36c784d83c26d0a5231d0de93c92526b61a1d86613ec7f",
"b085898a66daf40dc1e59604bbbddc3bd3e5e0700ed17b7e9761d10dfc60b73d",
"24e01ec341ca50bbe0343e33680874883101be48d8dc97bd5ea1c656aacc0978",
"dcfe4ffb3447279f8891f34f94785070a965f8b74638fd92ef09ee9d9d7a4f0c",
"f3ef01e91702871c15d4f7977f6ceac88e15c2555eb54c62b0838f7222a41bcc",
"219238c88969c05926fe4639fbaa370b678bb5caee1c4388f42be69730bdd9a1",
"375f5eeca6522b9ee65eef0b075260bed45b18718f39d42461c3153e07f10d28",
"21ebfc606f69d8ef6caec1bc1359e0dc576a6c3b60491afdd62f69e9d284ab57",
"61db9a3ebacf2451632aba7a6d44a408822d21ccdae5d5b9aa9bb032cb141b78",
"011775f8587e457319cf5b7ace6f0f665631f5be7a9a44e76cf30de3265ee180",
"d63092c2277805dcb4cb361bea6e09ac7ed9e9e9192724b8f51e57e54bdf3531",
"9e040066dfe5f02004658386ac66cf0bb6ffe857ed71cb337c7f5545ecf4558b"
],
"logIndex": 14949049,
"rootHash": "3adbc40e9dca0e0d507f75db29a43857dcc9fb0b28dcb1d99e4ec97f87f7f3ad",
"treeSize": 14949218
},
"signedEntryTimestamp": "MEUCIQCD4/HNTuGHl2ls0XpxpWwAcNUX7sY+sCEjqaG1ghOC3wIge5ZLH6/HpguYx5e+ptuDBfVW7xksqCjwdtEM0YW+n90="
}
}
Loading