fetch-source: export the simple fetch source mechanism via cli #1979
Chainguard Enforce / Enforce - Commit Signing
succeeded
Aug 12, 2025 in 1s
Successfully verified commit signature.
| CLAIM | DESCRIPTION | |
|---|---|---|
| ✅ | Found Git signature | |
| ✅ | Validated Git signature | |
| ✅ | Validated Rekor entry | |
| ✅ | Allowed by policy |
Details
Certificate
Details
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 466019904194251137920259166660351376334791529036 (0x51a10e23e0b1e84d7407bb18aa06faf9fe4a524c)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Aug 12 09:43:28 2025 UTC
Not After : Aug 12 09:53:28 2025 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
05:35:8b:57:18:8a:63:6a:d8:7f:87:22:90:cc:d6:
98:98:5d:17:55:37:5a:b6:5f:2e:f1:3b:97:a3:52:
73:4f
Y:
4e:97:56:a3:74:13:85:bf:24:14:cc:e4:0b:f7:e0:
ca:25:db:d4:db:13:19:24:32:87:7d:72:53:6d:0a:
10:7d
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
EC:DA:71:31:5D:E3:C9:7A:B7:0E:A4:92:1D:D5:41:2C:F1:9E:8F:43
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:lukasz.zemczak@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABmJ2p0SkAAAQDAEcwRQIhAKbKjyRNQ5Eu/fDaKTuXh44DrTCEPbyceoOO7djBM+ZEAiAWu28B6080nzpaJdnhghIzdetolyVCP+drbpwgL/5khw==
Signature Algorithm: ECDSA-SHA384
30:66:02:31:00:90:05:de:5e:1b:87:50:6b:34:23:ba:42:7b:
82:dc:56:0b:09:19:b3:df:e3:18:d0:7b:2f:06:c4:f8:ce:35:
57:ca:a7:db:07:c0:db:63:0c:17:2a:52:22:b2:e9:e8:7b:02:
31:00:bc:c4:d5:89:74:c5:75:12:70:86:28:ef:2b:63:07:d9:
a6:b3:9c:32:d9:62:9a:d5:42:46:b2:71:2d:7a:2f:89:a9:f2:
44:41:3d:4d:e0:fa:cc:48:e4:fa:e4:55:86:d9
Rekor Entry
Details
{
"body": "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",
"integratedTime": 1754991809,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 384369701,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n262466229\nTTuJNdzhD9WhbwNPN4UGvafdCWRtKRRKbfwZfQHVq8g=\n\n— rekor.sigstore.dev wNI9ajBFAiEArfKFbRSYMUsgci/1StLNrBnQpcl4EIbCaFjdkflBGvACICXqzF/CnQb1h1GlXeKZ15kDzzxD9VDJJnINgtETkhiF\n",
"hashes": [
"8d694dc4069942f1349560c1b9490f7aa431c70bc0e94ac4ccfbc09865a89635",
"5e6a617dc42f654372a526feb7783d3c613777853547e02d4afc8d6ea996d22b",
"8b0365ad6e264a323e1bbad60de95d01315c94e3b238b5bdc86356d53893310a",
"6e4f810306dfa7eaae86076a44bfd29c0d5255d5ac7f8ce8d5181dd46d06bdee",
"0f650dc6445bc8e28d9e0e68cb39cc69216e6a52f262f8b3ce23dae14792b789",
"d864fa822f5fb9800300d09405d4d9d9156d9b681acf3e8cf3aa2cb42be03bd7",
"d9421986010742322cb9176b963d0fd5d3bb9ce094b1ed06394087e1cef2fb66",
"c214e2a2701cc479bc9c30fe2fa9349aec6f97f25dc18334b4c406893d166ced",
"aea375af60c0f3a39d4451bd469ad6f9c29d6f7d1f539806b019846e29a6dedf",
"38b6244099fc8929ec3874af0ce47c534ec8cf4027e5905f152e7bcb7fe5c8be",
"828ae8fd73e3b34b47291e05f2b566d187d3456d63f9fcb2f08e26821e6666bb",
"ed8f5a05bc2af0d8924fcd22a0bb8a97b5060818ae19958b78e287d8158a9e72",
"bd494c2c080d191b004dd7019ceac60702f39a80b9cb0567436a653b4a9c5daf",
"883754f6e02a0285080bf6a8bf54c78ef09ceedaaf47344d7195469fac411af0",
"e378c1a9f898189beb53b4ee3d106393054d0e597995b8e27a45ebbb1d58e80a",
"8542b03417c3cf4ef6d1871f563a2c9dbf415b22dab01b1036776807ac4dfeb3",
"58f69d1190c73790af8fced81724eb0111836bddfc0fa58c75c8b53d47c414ee",
"864eb94032d3f95c490a6bb1aaa3646667b37133509e2ac7ffa887e094e7cfe3",
"8e448fc78d05c5c7b1cc0e39d792ce4b2849d97db378ae5420d27927edd289a6",
"e1411be688987cb9c47e60436fead9325cd83f6d0d5cd77adbcf3ecae33faaeb",
"43c014746acb38affeabb6696f94f7869a3600c120dea5b6547c393ad16d8512",
"c0b00d4f434cc48461fe9e6b45c6a6e0ca694886d45c87d3d47b7d1500365e72"
],
"logIndex": 262465439,
"rootHash": "4d3b8935dce10fd5a16f034f378506bda7dd09646d29144a6dfc197d01d5abc8",
"treeSize": 262466229
},
"signedEntryTimestamp": "MEYCIQDASL136Sa+TfM4GSYCgbwaYye5jZMjUbL3jjCXHjNFBgIhAK1oO/1EUZvVJ5Q+q7WkdbdT4XWQVW8HUmSdmxUYFMhT"
}
}
Loading