scribe-security/valint_discard
Discard evidence
View on GitHubTrust Signals
- Scorecard Score
- not yet scored
- Maintenance Recency
- Stale
- License
- None
Inputs
| name | description | required | default |
|---|---|---|---|
| target | Target object name format=[<image:tag>, <dir path>, <git url>] | yes | — |
| type | Target source type scheme=[docker,docker-archive, oci-archive, dir, registry, git, generic] | no | — |
| scribe-audience | Scribe auth audience | no | — |
| current | discard evidence attached to the current context | — | — |
| interactive | force interactive mode for the discard list | — | — |
| silent | automatically accept the discard list | — | — |
| allow-expired | Allow expired certs | — | — |
| attest-config | Attestation config path | — | — |
| attest-default | Attestation default config, options=[sigstore sigstore-github x509 x509-env] | — | — |
| backoff | Backoff duration | — | — |
| ca | x509 CA Chain path | — | — |
| cache-enable | Enable local cache | — | — |
| cert | x509 Cert path | — | — |
| config | Configuration file path | — | — |
| context-dir | Context dir | — | — |
| crl | x509 CRL path | — | — |
| crl-full-chain | Enable Full chain CRL verfication | — | — |
| deliverable | Mark as deliverable, options=[true, false] | — | — |
| depth | Git clone depth | — | — |
| disable-crl | Disable certificate revocation verificatoin | — | — |
| env | Environment keys to include in evidence | — | — |
| filter-regex | Filter out files by regex | — | — |
| filter-scope | Filter packages by scope | — | — |
| gate | Policy Gate name | — | — |
| git-auth | Git repository authentication info, [format: 'username:password'] | — | — |
| git-branch | Git branch in the repository | — | — |
| git-commit | Git commit hash in the repository | — | — |
| git-tag | Git tag in the repository | — | — |
| key | x509 Private key path | — | — |
| label | Add Custom labels | — | — |
| level | Log depth level, options=[panic fatal error warning info debug trace] | — | — |
| log-context | Attach context to all logs | — | — |
| log-file | Output log to file | — | — |
| oci | Enable OCI store | — | — |
| oci-repo | Select OCI custom attestation repo | — | — |
| output-directory | Output directory path | — | ./scribe/valint |
| output-file | Output file name | — | — |
| pipeline-name | Pipeline name | — | — |
| platform | Select target platform, examples=windows/armv6, arm64 ..) | — | — |
| predicate-type | Custom Predicate type (generic evidence format) | — | — |
| product-key | Product Key | — | — |
| product-version | Product Version | — | — |
| rule-args | Policy arguments | — | — |
| scribe-auth-audience | Scribe auth audience | — | — |
| scribe-client-id | Scribe Client ID | — | — |
| scribe-client-secret | Scribe Client Secret | — | — |
| scribe-enable | Enable scribe client | — | — |
| scribe-login-url | Scribe login url | — | — |
| scribe-url | Scribe API Url | — | — |
| structured | Enable structured logger | — | — |
| timeout | Timeout duration | — | — |
| verbose | Log verbosity level [-v,--verbose=1] = info, [-vv,--verbose=2] = debug | — | — |
Outputs
no outputs