dhi.io/amazon-eks-pod-identity-webhook
0-debian-dev, 0-debian13-dev, 0-dev, 0.6-debian-dev, 0.6-debian13-dev, 0.6-dev, 0.6.17-debian-dev, 0.6.17-debian13-dev, 0.6.17-dev
sha256:a08ec83e4a6717678b065c36d078ad8008dbb21c16b4a70daa91cfbd39b6f76d
Manifest digest:sha256:ff48f99b10e63cfe1c54e1cee9d98bc04f9acee6be5faeca3cd15ed6adf745ee
Size
39.91 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/amazon-eks-pod-identity-webhook:0-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/amazon-eks-pod-identity-webhook:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/amazon-eks-pod-identity-webhook@sha256:fe35e27c7fd102e89758949bf3828dbfcdc6dcf0f5a44a0674a322f34b521982 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/amazon-eks-pod-identity-webhook@sha256:5e635f328c2dad6343e487aefa4b19018711031e2a44e529d6de8e7146bc4319 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/amazon-eks-pod-identity-webhook@sha256:0917ae803a1caa0dfe8083ef04969d084f65b72e83979780f8a6d52bee97f9df |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/amazon-eks-pod-identity-webhook@sha256:5dabb0ae7ded6b0503b4ff83ec82cd39c11cb3c2813c620fb71614548a0bdcb7 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/amazon-eks-pod-identity-webhook@sha256:a3d6b1edb9ddf6bd7051809464da9797a995a2510e8868dab84f2d9ea6b0f6f8 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/amazon-eks-pod-identity-webhook@sha256:3abc054cebf2c096a816a1ad9b33567cc2d95bf5584dd9504b25d66917a6d98f |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/amazon-eks-pod-identity-webhook@sha256:b936d2370cb19df4696d5528494abfc8b0154a26dde27314df1cda6088fa75ae |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/amazon-eks-pod-identity-webhook@sha256:4d7145982ea28f4fe8f7dd59d8543b199c4e9fa3aa497b712048a8527d381a8f |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/amazon-eks-pod-identity-webhook@sha256:1135c1c2398529c1be220d6d24193376a211e2413796a61b78a580e89b6deaef |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/amazon-eks-pod-identity-webhook@sha256:83a88a0d9ce044ce4797c4f2411412f275c616de59b3b5f905d9724db5744787 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/amazon-eks-pod-identity-webhook@sha256:e644191e56cf431b54567a0eb38c9c7cfdaa7578eabcbce2e7fdc45a4d2948fb |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/amazon-eks-pod-identity-webhook@sha256:be099e7bd0e40dddfa0af03a231304d07eb79ca2dc6ec67a2b1306a63a9fe1f9 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/amazon-eks-pod-identity-webhook@sha256:c8274fb0649450ba87008636fef312e3da8fa36a6855cb97dc5891de53ac5694 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/amazon-eks-pod-identity-webhook@sha256:49ed78e2039f71435c5b3102274aec83b6529eadac239a139b0113d26eece7be |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/amazon-eks-pod-identity-webhook@sha256:82f5ebfab54fefc52c7ddab534a3eef6d7b82a6f6e9862a24885492ac79b9378 |