Chainguard Repo for Python#3419
Draft
s-stumbo wants to merge 1 commit into
Draft
Chainguard Enforce / Enforce - Commit Signing
succeeded
Jun 12, 2026 in 1s
Successfully verified commit signature.
| CLAIM | DESCRIPTION | |
|---|---|---|
| ✅ | Found Git signature | |
| ✅ | Validated Git signature | |
| ✅ | Validated Rekor entry | |
| ✅ | Allowed by policy |
Details
Certificate
Details
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 43718252347314984043080016884491722284857143137 (0x7a864eca7bd2628354a460aa1d687634c5daf61)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Jun 12 16:47:21 2026 UTC
Not After : Jun 12 16:57:21 2026 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
d2:56:3f:c7:e9:83:3e:34:2d:03:ea:0f:6f:f1:32:
75:f0:e0:89:7b:e4:5f:35:d9:8d:e9:76:32:c5:32:
e4:c5
Y:
d1:44:40:a1:f9:99:b7:c6:92:eb:be:a9:75:64:4d:
2c:5a:00:a0:fe:8a:5e:60:6c:43:29:3e:43:50:3f:
c8:b1
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
04:F2:C1:D2:92:E1:FA:E2:3D:54:A4:62:40:24:2B:4B:AE:9D:AE:76
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:sally.stumbo@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Unknown extension 1.3.6.1.4.1.57264.1.24
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABnry7IfkAAAQDAEcwRQIhAJ8kXyxk3VEAAGYCcr6Vn0qE9BGRjebgJX1EiTg11icEAiBxfGNaubQWlTJtmoBbhnM0qxfpYkgG/iRNlKV8Z0GiDg==
Signature Algorithm: ECDSA-SHA384
30:66:02:31:00:c4:2c:0f:c9:83:18:e2:0a:00:9f:63:cc:59:
d5:71:d5:06:2f:fa:7b:39:30:63:77:2c:25:fc:51:c4:70:c4:
e4:8e:f3:2b:69:73:1e:70:24:ce:0a:a5:33:9c:5f:48:8c:02:
31:00:c2:c7:7d:19:97:e4:91:59:67:09:21:16:e3:18:8d:31:
10:08:c2:2f:db:87:9f:f0:33:a8:2a:18:19:84:34:57:24:d9:
56:5e:cb:a6:c7:b0:cd:51:08:aa:cb:a7:e3:99
Rekor Entry
Details
{
"body": "eyJhcGlWZXJzaW9uIjoiMC4wLjEiLCJraW5kIjoiaGFzaGVkcmVrb3JkIiwic3BlYyI6eyJkYXRhIjp7Imhhc2giOnsiYWxnb3JpdGhtIjoic2hhMjU2IiwidmFsdWUiOiJhZWZiNDIxZTgxNTg5OTNiMWMxMDhlM2E4ZDNkYTY5MWNhMDNkMjc2ZjNlZjMzYzU2MmEwMmE5MjhhNTFlZDU0In19LCJzaWduYXR1cmUiOnsiY29udGVudCI6Ik1FUUNJRmU5Vkpvc0NGZE5UUENweE55YUFKU0g1YU9FeUkzLy9Nc2F6NzVVajNlVEFpQTZ3Z1Q0U3B0QTNrY3B4dFRNRDBycC94OWtkS1hnL3lVa0lyekY4a0h3NGc9PSIsInB1YmxpY0tleSI6eyJjb250ZW50IjoiTFMwdExTMUNSVWRKVGlCRFJWSlVTVVpKUTBGVVJTMHRMUzB0Q2sxSlNVUk5ha05EUVhKbFowRjNTVUpCWjBsVlFqWm9hemRMWlRsS2FXY3hVMnRaUzI5a1lVaFpNSGhrY2pKRmQwTm5XVWxMYjFwSmVtb3dSVUYzVFhjS1RucEZWazFDVFVkQk1WVkZRMmhOVFdNeWJHNWpNMUoyWTIxVmRWcEhWakpOVWpSM1NFRlpSRlpSVVVSRmVGWjZZVmRrZW1SSE9YbGFVekZ3WW01U2JBcGpiVEZzV2tkc2FHUkhWWGRJYUdOT1RXcFpkMDVxUlhsTlZGa3dUbnBKZUZkb1kwNU5hbGwzVG1wRmVVMVVXVEZPZWtsNFYycEJRVTFHYTNkRmQxbElDa3R2V2tsNmFqQkRRVkZaU1V0dldrbDZhakJFUVZGalJGRm5RVVV3YkZrdmVDdHRSRkJxVVhSQksyOVFZaTlGZVdSbVJHZHBXSFpyV0hwWVdtcGxiRElLVFhOVmVUVk5XRkpTUlVOb0sxcHRNM2h3VEhKMmNXd3hXa1V3YzFkblEyY3ZiM0JsV1VkNFJFdFVOVVJWUkM5SmMyRlBRMEZrV1hkblowaFRUVUUwUndwQk1WVmtSSGRGUWk5M1VVVkJkMGxJWjBSQlZFSm5UbFpJVTFWRlJFUkJTMEpuWjNKQ1owVkdRbEZqUkVGNlFXUkNaMDVXU0ZFMFJVWm5VVlZDVUV4Q0NqQndUR2dyZFVrNVZrdFNhVkZEVVhKVE5qWmtjbTVaZDBoM1dVUldVakJxUWtKbmQwWnZRVlV6T1ZCd2VqRlphMFZhWWpWeFRtcHdTMFpYYVhocE5Ga0tXa1E0ZDB0UldVUldVakJTUVZGSUwwSkNPSGRJV1VWaVl6SkdjMkpJYTNWak0xSXhZbGRLZGxGSFRtOVpWMngxV2pOV2FHTnRVWFZhUjFZeVRVTnJSd3BEYVhOSFFWRlJRbWMzT0hkQlVVVkZSekpvTUdSSVFucFBhVGgyV1ZkT2FtSXpWblZrU0UxMVdqSTVkbG95ZUd4TWJVNTJZbFJCY2tKbmIzSkNaMFZGQ2tGWlR5OU5RVVZKUWtJd1RVY3lhREJrU0VKNlQyazRkbGxYVG1waU0xWjFaRWhOZFZveU9YWmFNbmhzVEcxT2RtSlVRbUpDWjI5eVFtZEZSVUZaVHk4S1RVRkZXVUpGTUUxVE1FNXZWbGhvVGxaRlJqUlVWM0JHVFRBMWNWWlVWazlTUmxWNlZGaHdUazVGTVhGU1dHUlBWa1ZXVkZORVNtOU5SMUpKVVc1d1VBcGhWbFkxVlcxc1ZtVldTblJTYlhCYVRXcHJlRmx0TlZObGEzaDBXa2hhYVUxdFVucFhiRTB4WVcxSmVVMUVRMEpwWjFsTFMzZFpRa0pCU0ZkbFVVbEZDa0ZuVWpoQ1NHOUJaVUZDTWtGT01EbE5SM0pIZUhoRmVWbDRhMlZJU214dVRuZExhVk5zTmpRemFubDBMelJsUzJOdlFYWkxaVFpQUVVGQlFtNXllVGNLU1daclFVRkJVVVJCUldOM1VsRkphRUZLT0d0WWVYaHJNMVpGUVVGSFdVTmpjalpXYmpCeFJUbENSMUpxWldKblNsZ3hSV2xVWnpFeGFXTkZRV2xDZUFwbVIwNWhkV0pSVjJ4VVNuUnRiMEppYUc1Tk1IRjRabkJaYTJkSEwybFNUbXhMVmpoYU1FZHBSR3BCUzBKblozRm9hMnBQVUZGUlJFRjNUbkJCUkVKdENrRnFSVUY0UTNkUWVWbE5XVFJuYjBGdU1sQk5WMlJXZURGUldYWXJibk0xVFVkT00weERXRGhWWTFKM2VFOVRUemg1ZEhCamVEVjNTazAwUzNCVVQyTUtXREJwVFVGcVJVRjNjMlE1UjFwbWEydFdiRzVEVTBWWE5IaHBUazFTUVVsM2FTOWlhRFV2ZDAwMlozRkhRbTFGVGtaamF6SldXbVY1Tm1KSWMwMHhVZ3BEUzNKTWNDdFBXZ290TFMwdExVVk9SQ0JEUlZKVVNVWkpRMEZVUlMwdExTMHRDZz09In19fX0=",
"integratedTime": 1781282841,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 1804232160,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n1682329787\nL99zjCkCMXi7kW3VmQEtzv8gMrmSjcw3pog/T6G82k4=\n\n— rekor.sigstore.dev wNI9ajBGAiEAvO0aigwUo4Ah6lLuUohcL0pXfXeH4u3TgktP85YVCGcCIQDGxzMjoTWfIJBJoItUK3VihNwuWCZgs9nBxVF9sQwi5w==\n",
"hashes": [
"ef91229ee4a64f30b7f6411aafe2970ebf69b849e35452bb969ac149df88fba0",
"0f70ad8b7b2c5485d56b18b5198a7ac1ffdaf153c3b362bf297e0277985f02cd",
"21f83262a17ce921d07c48592ea5aa5e8bb8005795cd96e14188dcd1e4a846f9",
"79ea379319838eab6ecb8a7d61515422c67f2098e6b1cf9506bb26fb93191c68",
"1d0c721c133de5cbd5c42277cf289dde125bed603a54776bb8c45f0ec98359b1",
"93eee91475ecce25944756ac871dc305c5cafbd8ec5acab196544c5cd42d05ec",
"1abfec93241c6800b4e1f3e00a7fa31dc79336fa1b42f5dd982dfa6d7802e04a",
"bcd0eeb3d017b61ddaf77f298c80b7b26f0c001a0ab2eecd74704c99d27d1d30",
"88da89425ad77127beccd29f68d52b83c05cc311c3f91884d7c230afec53f717",
"2cd6b662a599d0428be4681dcb82b9d39aa67f7567a2574a199feaef35060b72",
"6c4cc63ecef04a79cb6141a02a0bb18215b8c9fa69212ff810a7e6ee19854739",
"5266d96e266c92499f84e8eaeadbdde691e36c90dc895a3cbf54111d1ebfd7a6",
"2757eb9b58573f9cd1dfbda38bdead96b7689fad289414c312d01ffe901f4e51",
"28b488705250774a827f164c8c477d47239792da1ea36ae2b1f84aef63bd575a",
"204e5eda004a0e1b1486e8aacc6fa23eda693cbee21e8ee85eef84a70c9c62ec",
"9363e1b97639e505f86989354cbcbe6b4d50c6f89d33766d20b273f9559cfd02",
"141a46e7f41681c9c97f1ae2505177469f6aecdbef077463acc877b81fc038c4",
"958190f626f00bcfac98c90f43a4dc8499b71fd35cfda4d82df75169c1850a1c",
"75ac6665a6a3469655f89c4788e61984906248a379b9caa38765a719b1e18abc",
"0ce09ea12328bc8bcb13192122f8aca30f40b8d5e0796b3810293247a11ca985"
],
"logIndex": 1682327898,
"rootHash": "2fdf738c29023178bb916dd599012dceff2032b9928dcc37a6883f4fa1bcda4e",
"treeSize": 1682329787
},
"signedEntryTimestamp": "MEUCIAhQUV33Aw4DZj0olYexowuvPc+M9QICuqZsv/ajBBMHAiEA7dH9bdLtXjgdteC65pzEcW8bD8bRqzeaqhfIQy3p84k="
}
}
Loading