spdx: allow comment in ExternalRef #1128
+1
−0
Open
Chainguard Enforce / Enforce - Commit Signing
succeeded
May 16, 2024 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 126560566005254872091320467190507022980185893753 (0x162b2c0bf0abc2c57227bc23a4ae3ad7e508ab79)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: May 16 20:57:52 2024 UTC
Not After : May 16 21:07:52 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
f9:86:b9:89:87:9c:54:b4:58:e4:fc:14:be:5b:15:
37:23:53:a9:c8:c9:8f:50:3e:92:c2:27:a4:d1:7c:
1e:32
Y:
ed:27:18:f9:9f:3d:3f:42:b7:32:dc:fa:5b:74:fd:
2c:b0:6e:7d:5d:c9:ab:3b:7a:05:d9:56:c2:94:30:
bb:ef
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
A3:20:9B:2B:EC:51:D6:98:03:8D:49:8E:FF:C3:0E:0B:45:A2:BD:90
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:dimitri.ledkov@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABj4Myc5oAAAQDAEcwRQIgFPeEhsYnRDFJkKzOc8JcEAs+M9n9Vpb93sBaAUvLTcsCIQC73yaSJEDBtTU4F1uJ3sMrM/bXIaRUF0Gq3dIeHec1pA==
Signature Algorithm: ECDSA-SHA384
30:66:02:31:00:a0:81:ac:36:31:1b:1c:1c:6a:98:ff:1d:67:
7c:a5:ad:84:c0:30:78:f5:58:e3:7f:de:90:78:3d:36:5d:42:
ff:ed:31:e7:eb:af:6d:43:7a:12:08:19:cd:8d:24:e9:67:02:
31:00:cb:73:2b:3b:be:5b:63:a9:0e:68:af:6a:2f:34:5c:e8:
16:43:51:a1:f7:e3:db:3a:9c:e6:c6:8c:4b:c9:8c:49:3a:9f:
3b:97:d0:a8:dc:81:ad:38:fa:41:27:4e:26:1c
Rekor Entry
{
"body": "eyJhcGlWZXJzaW9uIjoiMC4wLjEiLCJraW5kIjoiaGFzaGVkcmVrb3JkIiwic3BlYyI6eyJkYXRhIjp7Imhhc2giOnsiYWxnb3JpdGhtIjoic2hhMjU2IiwidmFsdWUiOiI5NDZiNjA3NDdkN2RmNTRmZmU2MGZmNWRkMjhhZDkwMGU3NjA4Y2Y4MWM3NDU1MmJhYzY4M2Q4NjljZjk5YzIyIn19LCJzaWduYXR1cmUiOnsiY29udGVudCI6Ik1FUUNJRFdEUE5YNDFTMUtraVo3UG9yQXQzalhBL20vaHJRdmRRM0oydTVWS2xzY0FpQW5OZFNGWjVqSjIvWU80WHVXcTA1UklKQ3luN2dySjNFZjJUQlkycE1lOGc9PSIsInB1YmxpY0tleSI6eyJjb250ZW50IjoiTFMwdExTMUNSVWRKVGlCRFJWSlVTVVpKUTBGVVJTMHRMUzB0Q2sxSlNVTXhla05EUVd4NVowRjNTVUpCWjBsVlJtbHpjME12UTNKM2MxWjVTamQzYW5CTE5EWXhLMVZKY1ROcmQwTm5XVWxMYjFwSmVtb3dSVUYzVFhjS1RucEZWazFDVFVkQk1WVkZRMmhOVFdNeWJHNWpNMUoyWTIxVmRWcEhWakpOVWpSM1NFRlpSRlpSVVVSRmVGWjZZVmRrZW1SSE9YbGFVekZ3WW01U2JBcGpiVEZzV2tkc2FHUkhWWGRJYUdOT1RXcFJkMDVVUlRKTmFrRXhUbnBWZVZkb1kwNU5hbEYzVGxSRk1rMXFSWGRPZWxWNVYycEJRVTFHYTNkRmQxbElDa3R2V2tsNmFqQkRRVkZaU1V0dldrbDZhakJFUVZGalJGRm5RVVVyV1dFMWFWbGxZMVpNVWxrMVVIZFZkbXh6Vms1NVRsUnhZMnBLYWpGQksydHpTVzRLY0U1R09FaHFUSFJLZUdvMWJub3dMMUZ5WTNrelVIQmlaRkF3YzNOSE5UbFlZMjF5VHpOdlJqSldZa05zUkVNM056WlBRMEZZYzNkblowWXpUVUUwUndwQk1WVmtSSGRGUWk5M1VVVkJkMGxJWjBSQlZFSm5UbFpJVTFWRlJFUkJTMEpuWjNKQ1owVkdRbEZqUkVGNlFXUkNaMDVXU0ZFMFJVWm5VVlZ2ZVVOaUNrc3JlRkl4Y0dkRWFsVnRUeTg0VFU5RE1GZHBkbHBCZDBoM1dVUldVakJxUWtKbmQwWnZRVlV6T1ZCd2VqRlphMFZhWWpWeFRtcHdTMFpYYVhocE5Ga0tXa1E0ZDB0M1dVUldVakJTUVZGSUwwSkRSWGRJTkVWa1drZHNkR0ZZVW5saFV6VnpXbGRTY21JeldrRlpNbWhvWVZjMWJtUlhSbmxhUXpWcldsaFpkd3BMVVZsTFMzZFpRa0pCUjBSMmVrRkNRVkZSWW1GSVVqQmpTRTAyVEhrNWFGa3lUblprVnpVd1kzazFibUl5T1c1aVIxVjFXVEk1ZEUxRGMwZERhWE5IQ2tGUlVVSm5OemgzUVZGblJVaFJkMkpoU0ZJd1kwaE5Oa3g1T1doWk1rNTJaRmMxTUdONU5XNWlNamx1WWtkVmRWa3lPWFJOU1VkTFFtZHZja0puUlVVS1FXUmFOVUZuVVVOQ1NIZEZaV2RDTkVGSVdVRXpWREIzWVhOaVNFVlVTbXBIVWpSamJWZGpNMEZ4U2t0WWNtcGxVRXN6TDJnMGNIbG5Remh3TjI4MFFRcEJRVWRRWjNwS2VtMW5RVUZDUVUxQlVucENSa0ZwUVZVNU5GTkhlR2xrUlUxVmJWRnlUVFY2ZDJ4M1VVTjZOSG95WmpGWGJIWXpaWGRHYjBKVE9IUk9DbmwzU1doQlRIWm1TbkJKYTFGTlJ6Rk9WR2RZVnpSdVpYZDVjM281ZEdOb2NFWlJXRkZoY21Rd2FEUmtOWHBYYTAxQmIwZERRM0ZIVTAwME9VSkJUVVFLUVRKclFVMUhXVU5OVVVObloyRjNNazFTYzJOSVIzRlpMM2d4Ym1aTFYzUm9UVUYzWlZCV1dUUXpMMlZyU0djNVRtd3hReThyTUhnMUszVjJZbFZPTmdwRloyZGFlbGt3YXpaWFkwTk5VVVJNWTNsek4zWnNkR3B4VVRWdmNqSnZkazVHZW05R2EwNVNiMlptYWpKNmNXTTFjMkZOVXpodFRWTlVjV1pQTldaUkNuRk9lVUp5VkdvMlVWTmtUMHBvZHowS0xTMHRMUzFGVGtRZ1EwVlNWRWxHU1VOQlZFVXRMUzB0TFFvPSJ9fX19",
"integratedTime": 1715893073,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 94493408,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 2605736670972794746\n90330716\nTLpfM8XLKKjIktaaJeC0V3K0pXjipORiWIuv7IYWXrU=\n\n— rekor.sigstore.dev wNI9ajBFAiEA+UBKZEGQN5qevB8mNEEeVt3cQJe0ujfAbdhlrEPih+YCIEMQ6rYkFfISD0mct5RiesueGSvfBx4L2jH/MtLbLLrG\n",
"hashes": [
"11a261baaa2fd57788f3627cbd4c30de1ba4158ad810b89b2c800703b88213c5",
"f539d83bfd2769d1b8b9c76cebda73558e6dd4ac90d97c90955a0f7e03ba1b44",
"5794b6133b948b351b391c6ab187629c8445dfa933ff2da80b8acf5dcdb5fc3b",
"ccce36bdb47adc4cc2ca317c089d1a341645ad3ec19cff18f1107c172c967389",
"eba87e434b80e0c078797b474d354204657178bfa560f26bac14212b003b089d",
"b26a7d1f27019b9604105c67de61cdd5798a008dd2e68f5261e76ca2fb248aa2",
"e4a8fa32b5dd97257f89eef5677e071604c8d50ae19b11b8a55fa4c04d525f3f",
"3dbfa2f3e738af8e7306f41c0facbf80fef3796fc4887e05266e867b60fd7fca",
"f797abc04cecf2317516042209b1342fbbde17a1fb9361a9cd5193c1586aa57a",
"5f929b4f33f211e1f52c81bdfe6545aebcd2a04cae488e29ec408ce03932ecc9",
"8ec39913f0823b00132f9a59c32b4930b74eb0c6dcc8390a97c9a319c4215e0c",
"2d4334390634d3f471d6fbc586257a77da9baa8aab6a9aa6c6f4b57f25f0de88",
"5d6a767ea4ef08f9bf1a6ed937a508c78b7dfa341f02cbfecf1c614453d363b2",
"62d8163a745679e2a9be050de95155f878c6647e8f3bb1de45580adb928c7c0a",
"23a0726e5c32717fc554e988b62a8d7c9b33ca18ce3a5a2370a7e906d4f08a48",
"63c1c60b6e1eea2e39aefb43207a06ca17e779e78669bad39cf30f4602a63f64",
"b23a2193fdc34087d74e07ffe57a70b5d17bc8d6eb7fc63290e307af50b20584",
"f7c7a7ccc682fb1e6808cbc8650039cfcbeed9aa4330216f13ff77e4d7ee3f0f"
],
"logIndex": 90329977,
"rootHash": "4cba5f33c5cb28a8c892d69a25e0b45772b4a578e2a4e462588bafec86165eb5",
"treeSize": 90330716
},
"signedEntryTimestamp": "MEUCIQClpYa/O2CRaB27HNGGoZx6SGrMkrHX7AZ/vtU04H2grgIgRrEG9lfRSBajiQBZaYpGqBYudPzYfOGdr6s1Ch7ZGp8="
}
}
Loading