dhi.io/awscli
2, 2-debian, 2-debian13, 2.36, 2.36-debian, 2.36-debian13, 2.36.46, 2.36.46-debian, 2.36.46-debian13
sha256:7aea0434b10fa282f0635b7d6cb5c7c5d0c611b5417c9a7b7e4ba1572aae0be9
Manifest digest:sha256:388b9334e5aff4d3b7cd70f41ea14805c91a3f5350077c55cddb0fb69eff72ba
Size
64.84 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/awscli:22. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/awscli:2 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/awscli@sha256:03237f8434ce8274386aaab6fb37489a647e354f3024aedd03a7b02973ad2f76 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/awscli@sha256:bf949105a6d87a4a1021c0cf5fc5e3a8b638e28477ce460cd1e6e5a4afc63384 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/awscli@sha256:9faa4cdbde90bece2813cd0712694ec1de52e1939853d5e68f326ec665c28aa8 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/awscli@sha256:60c4bd766c5cc9775435910de24bb08a43738fe2e08e124ac3dfc7c0216d5354 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/awscli@sha256:77096c3b45b05518d84a79645c6ce7d0b9e55f3ddee49eb1f5325fa00ed3272a |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/awscli@sha256:816cb0075226d2796e29059538387150e8fb2853a3cf33a687c6b47c9194ea41 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/awscli@sha256:c327ceb4879f6700a3be8f68d0782907a7717e7a5be8fe4359fe24935238b4d8 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/awscli@sha256:ac38e9cd4171f9c48f4cac97625f23e615aacfc4c984dc2e07d4bb512e45f204 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/awscli@sha256:5c127947e3fae87d957208d4e30abe4c6f771f8f1dcd6390a1d4749027ab8945 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/awscli@sha256:bbe946f84d863946c15adc3c9f73600ae164e353f28c6fd8e8e95bcc429694db |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/awscli@sha256:9a26667f56ef980cc9a306f3e09818ed3cce2f3d720eea0c8ad2e142b356f417 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/awscli@sha256:8ebd43d825ff51c12b369c2bb9114833ecd9cbb359cc2a16e638dd0fda72f124 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/awscli@sha256:f5bed5f2465ceea0ccb2b4f3cbae5c8511154b583eac901360f0a7045dc0e1be |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/awscli@sha256:f33c2dae2e8b931e54ed37a386c0364abcbe937a25a36f22762d739dd93b0426 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/awscli@sha256:4d27895ef7fe350b0392c925bc9a3673b79e63dff8846acd5d16f0bb0b13b4a9 |