pipelines: add npm-install pipeline #763
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
Oct 30, 2023 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 33699625965372572416729333743871999858484451521 (0x5e724bbde2810950ad6a273a9740c75338418c1)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Oct 17 21:46:21 2023 UTC
Not After : Oct 17 21:56:21 2023 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
73:e0:fb:3e:79:1d:2e:9e:d4:22:a4:a6:4e:ef:24:
e0:f7:96:05:7a:0a:c5:42:98:06:db:fe:88:b8:e7:
ad:e3
Y:
e4:26:36:0b:3f:c6:ab:9d:37:ed:2b:d6:c9:c8:b6:
79:13:79:8c:96:16:e9:23:63:0c:5f:d8:33:2b:9b:
77:ab
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
41:44:E8:5F:1D:36:F8:63:08:F2:D3:76:9F:0F:DE:C8:DB:7B:C7:22
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:juverm@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHkAdwB1AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABiz+apWsAAAQDAEYwRAIgNczZDGdgmY3DfNR4aVXb6mrJiuz3B2nhr8QrchHF7TACIFzKBS4qPbaQ+a9cdK3XDbPUVXsKz2snHpHgvz0jbVVH
Signature Algorithm: ECDSA-SHA384
30:66:02:31:00:d9:c9:e1:11:c5:a1:1d:7f:70:37:60:47:b8:
47:02:5d:e6:2a:90:7e:e9:9c:a1:06:8f:e7:e3:3c:00:88:aa:
bd:3e:3e:38:7a:d8:65:66:c4:34:42:a8:fe:df:60:0e:fc:02:
31:00:81:12:f0:8a:29:8d:ee:88:da:c3:3a:24:4d:db:7b:5b:
9e:36:10:d8:a7:f9:af:ee:71:94:b5:16:3e:7b:47:00:d3:f2:
2d:1f:d2:49:89:06:1f:ac:ec:24:25:e8:cf:97
Rekor Entry
{
"body": "eyJhcGlWZXJzaW9uIjoiMC4wLjEiLCJraW5kIjoiaGFzaGVkcmVrb3JkIiwic3BlYyI6eyJkYXRhIjp7Imhhc2giOnsiYWxnb3JpdGhtIjoic2hhMjU2IiwidmFsdWUiOiI1OWUzM2JjM2U4OTA0Yjc1OTdjODQzZDg1NzJhNzE0ODJiODVlOTY0YWVhYzY1YjI5NGUxOTAzYzIyYjViOThkIn19LCJzaWduYXR1cmUiOnsiY29udGVudCI6Ik1FUUNJRDdLbnFBM2R3RmZ4MFlJU1A0QjlNT2p1SXc5b254TVN4cFkzbitISXRxNUFpQi9qQStsU3VnZG5yRXdtK2wvR2FLNGR5YXNHRk52QWV5Q0ZSM216QUQrRVE9PSIsInB1YmxpY0tleSI6eyJjb250ZW50IjoiTFMwdExTMUNSVWRKVGlCRFJWSlVTVVpKUTBGVVJTMHRMUzB0Q2sxSlNVTjZha05EUVd4UFowRjNTVUpCWjBsVlFtVmphM1U1Tkc5RlNsVkxNWEZLZW5GWVVVMWtWRTlGUjAxRmQwTm5XVWxMYjFwSmVtb3dSVUYzVFhjS1RucEZWazFDVFVkQk1WVkZRMmhOVFdNeWJHNWpNMUoyWTIxVmRWcEhWakpOVWpSM1NFRlpSRlpSVVVSRmVGWjZZVmRrZW1SSE9YbGFVekZ3WW01U2JBcGpiVEZzV2tkc2FHUkhWWGRJYUdOT1RXcE5lRTFFUlROTmFrVXdUbXBKZUZkb1kwNU5hazE0VFVSRk0wMXFSVEZPYWtsNFYycEJRVTFHYTNkRmQxbElDa3R2V2tsNmFqQkRRVkZaU1V0dldrbDZhakJFUVZGalJGRm5RVVZqSzBRM1VHNXJaRXh3TjFWSmNWTnRWSFU0YXpSUVpWZENXRzlMZUZWTFdVSjBkaXNLYVV4cWJuSmxVR3RLYWxsTVVEaGhjbTVVWm5STE9XSktlVXhhTlVVemJVMXNhR0p3U1RKTlRWZzVaM3BMTlhRemNUWlBRMEZZU1hkblowWjFUVUUwUndwQk1WVmtSSGRGUWk5M1VVVkJkMGxJWjBSQlZFSm5UbFpJVTFWRlJFUkJTMEpuWjNKQ1owVkdRbEZqUkVGNlFXUkNaMDVXU0ZFMFJVWm5VVlZSVlZSdkNsaDRNRElyUjAxSk9IUk9NbTUzTDJWNVRuUTNlSGxKZDBoM1dVUldVakJxUWtKbmQwWnZRVlV6T1ZCd2VqRlphMFZhWWpWeFRtcHdTMFpYYVhocE5Ga0tXa1E0ZDBsM1dVUldVakJTUVZGSUwwSkNhM2RHTkVWV1lXNVdNbHBZU25SUlIwNXZXVmRzZFZvelZtaGpiVkYxV2tkV01rMURhMGREYVhOSFFWRlJRZ3BuTnpoM1FWRkZSVWN5YURCa1NFSjZUMms0ZGxsWFRtcGlNMVoxWkVoTmRWb3lPWFphTW5oc1RHMU9kbUpVUVhKQ1oyOXlRbWRGUlVGWlR5OU5RVVZKQ2tKQ01FMUhNbWd3WkVoQ2VrOXBPSFpaVjA1cVlqTldkV1JJVFhWYU1qbDJXako0YkV4dFRuWmlWRU5DYVZGWlMwdDNXVUpDUVVoWFpWRkpSVUZuVWpjS1FraHJRV1IzUWpGQlRqQTVUVWR5UjNoNFJYbFplR3RsU0Vwc2JrNTNTMmxUYkRZME0ycDVkQzgwWlV0amIwRjJTMlUyVDBGQlFVSnBlaXRoY0ZkelFRcEJRVkZFUVVWWmQxSkJTV2RPWTNwYVJFZGtaMjFaTTBSbVRsSTBZVlpZWWpadGNrcHBkWG96UWpKdWFISTRVWEpqYUVoR04xUkJRMGxHZWt0Q1V6UnhDbEJpWVZFcllUbGpaRXN6V0VSaVVGVldXSE5MZWpKemJraHdTR2QyZWpCcVlsWldTRTFCYjBkRFEzRkhVMDAwT1VKQlRVUkJNbXRCVFVkWlEwMVJSRm9LZVdWRlVuaGhSV1JtTTBFeldVVmxORkozU21RMWFYRlJablZ0WTI5UllWQTFLMDA0UVVscGNYWlVOQ3RQU0hKWldsZGlSVTVGUzI4dmREbG5SSFozUXdwTlVVTkNSWFpEUzB0Wk0zVnBUbkpFVDJsU1RqSXpkR0p1YWxsUk1rdG1OWElyTlhoc1RGVlhVRzUwU0VGT1VIbE1VaTlUVTFsclIwZzJlbk5LUTFodkNubzFZejBLTFMwdExTMUZUa1FnUTBWU1ZFbEdTVU5CVkVVdExTMHRMUW89In19fX0=",
"integratedTime": 1697579181,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 43788134,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 2605736670972794746\n42277587\njketfT/5AaGY3VSE+5SBj2VjpaS/XSWW3WNGjEPJVKE=\nTimestamp: 1698690785871328309\n\n— rekor.sigstore.dev wNI9ajBEAiAL5Iv8ngFpMbS8VBx7bZISYgQKimDb0pmFo+uKVLFRDAIgM2NeV1ezFumXPgq33ieLgPasV4yOkFIRiNV2dMOAj7A=\n",
"hashes": [
"e026e84b09d01223277889b44aa1cf1b937aa260be062725533f0cc8fd5e8e1f",
"cb3d0f489c8832c3a0ac2dfe39f8dec32ea4aba37de306dbbfe646de905449ad",
"d8b56d2f4eff416ee9e095eda6c1427ad22a9fa7ef74b21b5b685ca95ebb5243",
"8f0947e2af8a8f5e87245ce85d98c00d16e953d85438885634a4ffab4e849262",
"5fad6b98ca02ef5d5e07b45b72060275c15f810e7ae48e1157cd2301f1665ea4",
"5cc61599f2422a7d61a1d797157e89aeb17144a56294519c3bf62b9f33c81de3",
"65691c4a324e4bd3c3b393707f878b45b23ac55bdc00cf26627f95201835dbd5",
"57a0fc310f585383682cc235cde9ff45a3efe31a3c5210956610b27e8246822b",
"a9351e279cce2fa59a1b485708f62e82a2b31c76fd1caa8cb867b46315a6026f",
"ccdf3b17d2140538285d5c272f07be1d0b7edee116ebd61d76148b8faec017c9",
"d6d8e5263304a8206a1adcc167f6f87058fda78918c5c2c3fd1618379b270ac6",
"7f9886e097e350a0f24ccbdbebd60cf79fad1f43f73e5fe9c5640bd5549518a7",
"6819e0a4eac44ff39073ca12e48fd313b41875aa0a3c905197367d4306c862a3",
"51d745865cfb3feea25248b892f3724422eadffd75db153ea2d353b3fe434c83",
"aba22ebbf1d9e5c21679814e6f6e96de370399856348d897a34727dfc4e811c4",
"dc19fe05e129c98e0153412219076c6e5ac5f0859b9c52b6df551c4b4555df95",
"d44ea34b760a9747baaf5362c11f0636231bc74ec915abac18317f3ecb1576b9",
"76427886ebc3fc4422fe7d1c3a040bbe34fc9a270e0ece56b35cbdbff225524f",
"7f0623feed8dee2aa069c8c136ea8717c6427b51b7227fd0f7a3ef40d76ced9f",
"c02017b47f480bd971bf716f8e8fb9b3fa05ba2e306ca52756fcdc0479c7eeb3",
"285cea5e561763c90fb55518e9828a4acf102c57fb6223111b4a20c08cea37f5",
"2993aeade1e534df5560721231c0c24fdb8ea7a4586e9b511b435372d6239e73",
"12a5c36838e5ac885e63fd8243f774fa9a781017aa2e56aadbfd28722ca8e406",
"257f6e8605a5f711702969b6e248cc8aead648d2aee03cf28624e143ffcc383f",
"6969c49bd73f19bf28a5eaeabd331ddd60502defb2cd3d96e17b741c80adec6c"
],
"logIndex": 39624703,
"rootHash": "8e47ad7d3ff901a198dd5484fb94818f6563a5a4bf5d2596dd63468c43c954a1",
"treeSize": 42277587
},
"signedEntryTimestamp": "MEQCIDua1vEhQuXOikZzsVtvVk3fAo68M+sMIiXGdhlvXDYPAiAOmEg8D2Bu9ekz7hIgxOBn4jHvhgYan1+t7sQ6ypAwmQ=="
}
}
Loading