git-checkout: Invoke git fetch with --unshallow
#2258
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
Dec 8, 2025 in 0s
Successfully verified commit signature.
| CLAIM | DESCRIPTION | |
|---|---|---|
| ✅ | Found Git signature | |
| ✅ | Validated Git signature | |
| ✅ | Validated Rekor entry | |
| ✅ | Allowed by policy |
Details
Certificate
Details
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 467953548668326177161194866988442189378511732466 (0x51f7c34a4463e8f973069b127018296ee6d47ef2)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Dec 8 00:11:56 2025 UTC
Not After : Dec 8 00:21:56 2025 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
0e:ab:9a:06:d4:25:6c:c4:be:5d:49:fb:b4:46:d2:
69:28:c1:1f:bc:11:d9:d4:c1:84:a8:3f:3d:a7:f8:
e5:10
Y:
47:ba:8e:be:53:a9:96:b3:97:20:d4:ec:1a:cd:bc:
38:9b:a4:96:9d:8b:e2:52:85:3d:00:3e:9f:e9:a2:
8d:f0
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
00:82:C9:E6:80:BC:0E:2D:55:C8:54:05:AA:A2:18:B2:D6:AF:A3:4B
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:[email protected]
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABmvtM9icAAAQDAEcwRQIhAJ4xufFA9QI+6AAzJlw7oc8wP0+4d0JJjqhz8URSFYu0AiAHIIWVnVT/O6fviBAzumUX+3Yxw/qcwNSMLt8qbJGP8A==
Signature Algorithm: ECDSA-SHA384
30:65:02:31:00:94:a7:8d:f5:d3:40:ef:88:6e:2e:90:bf:00:
49:28:18:ca:3b:3d:2c:0b:3c:39:dc:55:22:10:1c:6c:13:98:
44:41:b4:0b:1f:92:42:a6:ff:7d:06:ba:12:7b:39:0f:c2:02:
30:74:8b:16:85:54:a3:86:3a:25:9a:5b:90:20:f3:0f:2e:c3:
83:d4:b8:69:7c:f2:29:ef:25:92:b3:4f:6a:8e:e6:47:1d:57:
a1:68:03:c5:9e:a6:cb:2c:19:1e:fe:6e:18
Rekor Entry
Details
{
"body": "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",
"integratedTime": 1765152716,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 748174419,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n626290691\nOIehLIyunhdfIQV5LtbLbIOsGsF7MvonbIpUvSfZG0g=\n\n— rekor.sigstore.dev wNI9ajBFAiEA68y2llU/tbFaDLOd9dovsY+rfg5Q97a6xF3VhhTpyloCIGkBPBMM7PIOQlN4goDtuRJVYUfK3xuWlGXkRNp+kCNM\n",
"hashes": [
"f93b5be850d88e1b564d730bced03cf06450b2ce981a68731753a040d2a51050",
"5d097e5960dcf64d2a073be31738a2f5c17929d76e1cfd70474dd747f8845745",
"844e9e91193246a1f39c18c029f3eb78959286a63bbf7cde0eb534ce3397d81b",
"c9d2e2d51a734db36c3921765ac29b40b79a1290abf3658935a8e8b8d9810395",
"5aa5726586ae39ca44f2e4194ad666ddb1b187fa73bb22d5b028847f4ea78815",
"2d0b675958b176bde1da7215625583c69d1834dec25ea3dec8d02233fa88f161",
"181e8a8ebc1d3cadceba21d59ed7654ad9ab6d2a36e4697eebb60ade3c602893",
"1ab007f2544636f42ceca293cd0f8d7bbb0d53110251915a86b87af321cd1cb1",
"cfda5ca17c1733463bce466562a7222f5b11a911d206103fba3561039429ac6b",
"3ab4786271959940b9098a9d32c827b48396ec7d666e8a2c97ea2453f33d996f",
"50627aa29693e2e80d7a420273c1d97792e8dd1e8bfd28db2dd2ee3702ddcf27",
"4f45777d6838f6b7bc57ad83aa54e2ee9ec4f45d6adb4a936390d9296227582f",
"baafbb3422d32e0b19f3100c996004a60844095df54a091ba1de45a2e88f4e25",
"daafef281f8baf64282978732895c508506d8f9fb528d3217d186565da1b2f96",
"2f2d8fe6e10c9171482f3df271c68e6efeec80dcc1340fcb75268b5bdf109af8",
"506db85ae6852c8d174218a77f290983015470f467c8c56c93cfaa4a4073ce11",
"7a8331933506c3fd1757b8e6e7ea5fa3737e811073ca9ca7a220911743a37a4c",
"e31c4453f70529365c0bccc51f1647fc7164c105c9cdaf468910e2b53e0f9dbc",
"d2312ae9e6a0c6aa123a8afd391fff7d8eae3ac3f32da135ab59fdb594737d27",
"6665246241c1cb507bdb726b12088abdea5374762b3facb66b8a0e0d8be2e556",
"4f80ea583e36840b4dfaf5fc8ca096aa80b899e13825e908f4bc5818270fcb53"
],
"logIndex": 626270157,
"rootHash": "3887a12c8cae9e175f2105792ed6cb6c83ac1ac17b32fa276c8a54bd27d91b48",
"treeSize": 626290691
},
"signedEntryTimestamp": "MEYCIQDZvuII+d9L8RThAgcsyxMbzujbfcjL8VhHZ4cZZdFEiAIhAL1D9LK9BHNaoQS8HCZxMzV/pUkqO0ttCtcj4z9KuUxz"
}
}
Loading