Changelog
- 26b31fd Bump alpine from 3.15.0 to 3.15.1 (#440)
- 1c3d56e Update alpine version (#448)
- bad5703 updated dependencies (#446)
You can verify the signatures of both the checksums.txt file and the published docker images using cosign.
cosign verify-blob checksums.txt --signature=checksums.txt.sig --key https://artifacts.fairwinds.com/cosign.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4 --key https://artifacts.fairwinds.com/cosign.pub