dhi.io/cdi-controller
1-debian-dev, 1-debian13-dev, 1-dev, 1.66-debian-dev, 1.66-debian13-dev, 1.66-dev, 1.66.1-debian-dev, 1.66.1-debian13-dev, 1.66.1-dev
sha256:1e2b76321f7b4ef822e8f39f3b69fb47e90cee89e64caaf2bce8a70a985fdd22
Manifest digest:sha256:cdc95214826535722eb9a0e8689b4f338b647f4d961766de51eac345737e81ba
Size
53.75 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/cdi-controller:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/cdi-controller:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/cdi-controller@sha256:afbed2bb3631f6d5f819b1f7e04d66fd3880b5489141568c8e08d7e2f8bd5759 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/cdi-controller@sha256:20a44a2e5e26dc9bdb02a5d593b786e9b669253a4f28a49d4549709b2c3b5ba7 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/cdi-controller@sha256:da9584ddcab04d532233ff1dab303ffc10b2a719bcf9aca97821b7766e2e6e24 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/cdi-controller@sha256:b6fd3b74a7301c96edbd44ef79717122b0171439a3ab8cbb3aac2da840ccd401 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/cdi-controller@sha256:e36563c681aeaf91cda57c7c2a96cbb92d571154df1892b441db78a051f80323 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/cdi-controller@sha256:6d9a7d7bef19c4588677e254b4ac1272410b2fb1e6f659fe4928176ab60efdc6 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/cdi-controller@sha256:358994495c760f45bea15b129623527f3bcbd6d129e2c8556a3858f3cd8601c2 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/cdi-controller@sha256:24aabcf669e0c2735e804df59cfe6e3e94538b972b9eef5f41c2359ef733d2e7 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/cdi-controller@sha256:23ac1145fa264792f93c4ac8bb07ae34de751c5cff3116bd2723638575473e13 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/cdi-controller@sha256:1ccdcd63544d80ef7e3a71267be86a68562ccf60a6fc10b2d86548cbf511c0e0 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/cdi-controller@sha256:81436499d63c4a04844e9df28ecb81f0c4b28c4bf1d44b5bd8ccffd9d6f735b7 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/cdi-controller@sha256:fd5d7c4415d332f99f5838c15ece128206c5bb233a62392f44626236bf007007 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/cdi-controller@sha256:210aa6a37b0ae2a57a5a24d8de918ef515ddb79ad80b7d0a8abe06db937f033c |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/cdi-controller@sha256:1da6b74ccd1d987a351a0eed93eb9c76c83e6414d282934f89f497768418ac7b |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/cdi-controller@sha256:f583a55e12b254ce4fde71fd4e1f035322c9c80b4e89f7fae644076fdb220ece |