Name | Modified | Size | Downloads / Week |
---|---|---|---|
Parent folder | |||
goldilocks_4.14.0_checksums.txt | 2025-06-25 | 620 Bytes | |
goldilocks_4.14.0_darwin_amd64.tar.gz | 2025-06-25 | 15.0 MB | |
goldilocks_4.14.0_darwin_arm64.tar.gz | 2025-06-25 | 14.0 MB | |
goldilocks_4.14.0_linux_amd64.tar.gz | 2025-06-25 | 14.7 MB | |
goldilocks_4.14.0_linux_arm64.tar.gz | 2025-06-25 | 13.3 MB | |
goldilocks_4.14.0_linux_armv6.tar.gz | 2025-06-25 | 13.8 MB | |
goldilocks_4.14.0_linux_armv7.tar.gz | 2025-06-25 | 13.8 MB | |
README.md | 2025-06-25 | 652 Bytes | |
v4.14.0 source code.tar.gz | 2025-06-25 | 1.1 MB | |
v4.14.0 source code.zip | 2025-06-25 | 1.1 MB | |
Totals: 10 Items | 86.7 MB | 5 |
Changelog
- [8b07f7] Bumped alpine to 3.21 (#747)
- [2479d8] INS-1149: Fix CVE-2025-22874 for goldilocks (#759)
- [0ef8ad] remove packr in favor of embed (#761)
You can verify the signatures of both the checksums.txt file and the published docker images using cosign.
sha256sum -c goldilocks_v4.14.0_checksums.txt --ignore-missing
cosign verify-blob goldilocks_v4.14.0_checksums.txt --signature=goldilocks_v4.14.0_checksums.txt.sig --key https://artifacts.fairwinds.com/cosign.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4 --key https://artifacts.fairwinds.com/cosign.pub