Sign inSign up

confidentialai/stoffel-labs-stoffel

By confidentialai

•Updated 3 months ago

Attested build of stoffel-labs/stoffel

Artifact
0

32

confidentialai/stoffel-labs-stoffel repository overview

⁠Attested build of https://github.com/Stoffel-Labs/stoffel⁠

Cryptographically attested builds of stoffel-labs/stoffel⁠, produced inside a Confidential VM by Kettle⁠. Every build carries hardware-signed SLSA provenance, so anyone can verify exactly which source, dependencies, and toolchain produced the binaries.

Image tags are the git commit SHA that was built.

⁠1. Pull a build

Builds are OCI artifacts, pulled with oras⁠:

oras pull docker.io/confidentialai/stoffel-labs-stoffel:1228cf557a65abbaa20256651fe19dc59b45967c

This drops provenance.json, evidence.json, and the built binaries into the current directory.

⁠2. Verify the build

Install Kettle⁠, then verify the pulled artifact:

kettle verify .

Kettle reads evidence.json, verifies the hardware signature against the vendor's public keys, then validates the signed provenance.json and confirms the binary checksums.

⁠3. Verify the CVM image that produced it

The check above proves the build's attestation. To verify the full launch chain (hardware launch measurement -> the exact IGVM that booted the CVM -> the dm-verity root hash committed in that IGVM -> the actual VM disk image), pull the exact, digest-pinned confidential-VM image this build ran on and re-run verification against it:

oras pull docker.io/confidentialai/kettle-server@sha256:287fe375cd0a620f7cc45c8940f1228e5319b6e2b5d5568b0b66a4474db8c6f6
kettle verify . --igvm guest-smp10.igvm --image disk.raw

Tag summary

Content type

Unrecognized

Digest

sha256:ac32dbc6d…

Size

22.9 MB

Last updated

3 months ago

docker pull confidentialai/stoffel-labs-stoffel:1228cf557a65abbaa20256651fe19dc59b45967c