dhi.io/registration-operator
1-debian-dev, 1-debian13-dev, 1-dev, 1.3-debian-dev, 1.3-debian13-dev, 1.3-dev, 1.3.1-debian-dev, 1.3.1-debian13-dev, 1.3.1-dev
sha256:2c6cb08585e599c9f936789d076a9dbfb0f509ec5d8e37449132f256f5246fb0
Manifest digest:sha256:24710db543199985e3359a97eda0d69b877c9ddb3193e74a09f9a2007b5ae03a
Size
69.86 MB
Last pushed
8 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/registration-operator:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/registration-operator:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/registration-operator@sha256:2384194bb8830fd5f3989c19e2fb99a0d989d7a728d1063ef5d6d73a9e19b9ce |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/registration-operator@sha256:f0984517210cf6ec6266c15ae1f2e872c360286bbfd2ddd6da881afac1a3c500 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/registration-operator@sha256:a4f0d0651ff4062de3cc27619537b2314844faa471135c35911c63620da5c272 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/registration-operator@sha256:bdd48a1772ece7d2d566b4e096b31503d98fa4730fa876ab53994908f3602bb9 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/registration-operator@sha256:46b75c4457c79454fb1d5c14a4d2404661a73088c99534cf0b893881d9868f51 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/registration-operator@sha256:158124ba75f1008b227fd8ffb2a62d80dc7b311897a4c23e3977693934868645 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/registration-operator@sha256:db9574c4509a031a20d7538c29476213e55c880aa0b233446212e35fcf924fa6 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/registration-operator@sha256:5990449aaffbdf18cc174c5aef42e6adb3f242724d64da39e776505900d7c95c |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/registration-operator@sha256:b70a1e2f5ffe15b0391d27c8ae3604c2ea78e47a8bf961d464589759039dca31 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/registration-operator@sha256:dc9776b532613a759c1f7affdba4075e5d443ed25e7ab33a532a8533abae634e |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/registration-operator@sha256:8689d84822582cdce87a10f00f843471628227e32badd246fff6cdf8d47a385a |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/registration-operator@sha256:1ff4046e6466fde1bca8399d00965d351ea40493b1c6ee13e6a3099e2bdd25e3 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/registration-operator@sha256:2912be380e36c8ad27b9a16ad38bc684239b1b67fa26a0a7a29b7194570fb1fa |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/registration-operator@sha256:ef06cde64e8a318b93576608a7474fb5e2305c23b46c6c43a7f7321b4066e397 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/registration-operator@sha256:b5b2229c725751a1cd518668867d2325f3475b4f7f0fef6714529111b3c1f305 |