Registration Operator

dhi.io/registration-operator

registration-operator 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.3-debian-dev, 1.3-debian13-dev, 1.3-dev, 1.3.1-debian-dev, 1.3.1-debian13-dev, 1.3.1-dev

Index digest:

sha256:2c6cb08585e599c9f936789d076a9dbfb0f509ec5d8e37449132f256f5246fb0

Manifest digest:

sha256:24710db543199985e3359a97eda0d69b877c9ddb3193e74a09f9a2007b5ae03a

Size

69.86 MB

Last pushed

8 days ago

Vulnerabilities

0
0
2
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/registration-operator:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/registration-operator:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/registration-operator@sha256:2384194bb8830fd5f3989c19e2fb99a0d989d7a728d1063ef5d6d73a9e19b9ce
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/registration-operator@sha256:f0984517210cf6ec6266c15ae1f2e872c360286bbfd2ddd6da881afac1a3c500
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/registration-operator@sha256:a4f0d0651ff4062de3cc27619537b2314844faa471135c35911c63620da5c272
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/registration-operator@sha256:bdd48a1772ece7d2d566b4e096b31503d98fa4730fa876ab53994908f3602bb9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/registration-operator@sha256:46b75c4457c79454fb1d5c14a4d2404661a73088c99534cf0b893881d9868f51
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/registration-operator@sha256:158124ba75f1008b227fd8ffb2a62d80dc7b311897a4c23e3977693934868645
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/registration-operator@sha256:db9574c4509a031a20d7538c29476213e55c880aa0b233446212e35fcf924fa6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/registration-operator@sha256:5990449aaffbdf18cc174c5aef42e6adb3f242724d64da39e776505900d7c95c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/registration-operator@sha256:b70a1e2f5ffe15b0391d27c8ae3604c2ea78e47a8bf961d464589759039dca31
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/registration-operator@sha256:dc9776b532613a759c1f7affdba4075e5d443ed25e7ab33a532a8533abae634e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/registration-operator@sha256:8689d84822582cdce87a10f00f843471628227e32badd246fff6cdf8d47a385a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/registration-operator@sha256:1ff4046e6466fde1bca8399d00965d351ea40493b1c6ee13e6a3099e2bdd25e3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/registration-operator@sha256:2912be380e36c8ad27b9a16ad38bc684239b1b67fa26a0a7a29b7194570fb1fa
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/registration-operator@sha256:ef06cde64e8a318b93576608a7474fb5e2305c23b46c6c43a7f7321b4066e397
SPDX SBOMhttps://spdx.dev/Documentdhi.io/registration-operator@sha256:b5b2229c725751a1cd518668867d2325f3475b4f7f0fef6714529111b3c1f305