Sign inSign up
CDI Upload Proxy

dhi.io/cdi-uploadproxy

CDI Upload Proxy 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.66-debian-dev, 1.66-debian13-dev, 1.66-dev, 1.66.1-debian-dev, 1.66.1-debian13-dev, 1.66.1-dev

Index digest:

sha256:772af56a5c5378eaeb39bc78ebbf062acd8657a267e79291e0a66cb9fd4b6005

Manifest digest:

sha256:5f0936a07bd7d2ace8ce5cb49859c21dd94e7a5d54f0d80f06a8abfe32e27f34

Size

47.66 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cdi-uploadproxy:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cdi-uploadproxy:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cdi-uploadproxy@sha256:bed99201b55f25ba3a0b29f0a433af807081bd8e62c76c2f705dc1087f9743df
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cdi-uploadproxy@sha256:acba5212fd4a334f1b971942b038773673b93786de895014feb95a7a1ce1deb7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cdi-uploadproxy@sha256:8c2b8379f9c745580d468db72b99e93cee5b5a39069462d4aa5e288f3b94c00a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cdi-uploadproxy@sha256:67b6ce274630c64104040ce5cfc224400e67f18f2e42e72a5521825cc598dd49
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cdi-uploadproxy@sha256:c76cebdd1d80a958bcf4e9a784e2f6b6e1f160e6622805d0c38ea9fb99753685
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cdi-uploadproxy@sha256:24789acd56ceb2ab6b66bc861f2efcbd8cfe0e33ffc951b9939106b488892913
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cdi-uploadproxy@sha256:e46ca12e9322c9d41e318ba1d10e303ce257dafe91dcc45b7851e5fb01cf6112
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cdi-uploadproxy@sha256:c1ee68a50e6257beb362853b6e1156cbc9579d0b3e62fbc9fb1ea2114514b71b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cdi-uploadproxy@sha256:e314a5c8a4233314142a614e3e5960530be195866f39ae9691b5d9f343e6ea0b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cdi-uploadproxy@sha256:516563e219ebf926bc597a1443cc5bf89f558e1fdc20a960a8ea8bec7007bed6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cdi-uploadproxy@sha256:e50f7096209f33d87e79afb8577a49bc8546cc8757ef5462cd51e7c6463d14c1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cdi-uploadproxy@sha256:a1529ee1a1280b750d8f31caf63f6c33d3b0bc967033e46b0dc315d602593c6c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cdi-uploadproxy@sha256:9c51397ca2cbc4c9e02623c8221eca5fea34b9ac872026a4d0cae05d826273f4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cdi-uploadproxy@sha256:198c9b3fd2b27ec7657c467e0f219a0f74eeb7e82b50668c6a8b8056161ee0c9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cdi-uploadproxy@sha256:aaa5702fc91f3e5819dae1310e402a4a9dc8d2c6386e4e599a7aada0ff8b2fcc