dhi.io/rust
1-alpine-sfw-dev, 1-alpine3.24-sfw-dev, 1.96-alpine-sfw-dev, 1.96-alpine3.24-sfw-dev, 1.96.1-alpine-sfw-dev, 1.96.1-alpine3.24-sfw-dev
sha256:a88841976b39aae92e8a6944878f0b3de7972bddfb3ade5275558040d74c8583
Manifest digest:sha256:951eb235084efae476700369f31ba1648d21d65a690a32aa056e3d7dad6a4003
Size
227.85 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/rust:1-alpine-sfw-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/rust:1-alpine-sfw-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/rust@sha256:4796c51ef52f9d294bd32369de2d75378416d730de25754f7af43a9111880f77 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/rust@sha256:34a4562f0b24e14b0f1c5ea5dbb225bf98b277686c3a457db77fb0fcfff77648 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/rust@sha256:ff4c72c4163ac6889a40d31c1cabfb9928a1508c8aacf56f26d26ca12d6d00b7 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/rust@sha256:137d6dc7ed671cc07c6f548f89fe1af77cb9347e45bb880b829d2db3105e8524 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/rust@sha256:1fe65e472e0f37b7acf84293fcb8b2655e93ad25bfa6a98425502f98c8cdf1d5 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/rust@sha256:7c607b9d86ecb275dccc5c16c2b26c13452fd7ac143128a154c9aba059a9b9bf |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/rust@sha256:e953a529bbb64050184975e689d42cf4b470b4a459f0a270a566ea3773e075f9 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/rust@sha256:1506e4361bd670ef1d666c303e1f6a65b283d6ac561d0490e0ae0a1dba3fdaa2 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/rust@sha256:ffbc659fe0f3af1940243ace01526484ba008dd1f6f5869e85359fa6313932ae |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/rust@sha256:3b5c70cdd17e40f662d003f53be9ce150f771276e133bb0b311d57340e42f66f |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/rust@sha256:2beb0bb2c80caf3746a27853d5e318583df554537298affee19a9562eec73705 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/rust@sha256:6ada34ea08f688281e8f3ba994942834a6741b6738310089bc7c04f3e30345e4 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/rust@sha256:71457a9d3ed309c4b2399cc323dd40ea81656a99ce7871f128a145a39419e196 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/rust@sha256:99385f258e32e6996dd9dd5e365e2d6dee25738a405ed801b710ac68e53e18d0 |