Sign inSign up
Centrifugo

dhi.io/centrifugo

Centrifugo 6.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

6-alpine-dev, 6-alpine3.24-dev, 6.9-alpine-dev, 6.9-alpine3.24-dev, 6.9.6-alpine-dev, 6.9.6-alpine3.24-dev

Index digest:

sha256:9704392d100c7c26646d5fe6db7e0386104f9ea2b4e3e795b28253c80cc45c35

Manifest digest:

sha256:1269a360b28dd92e38a87352240276f4b855dcc962a32246838284dd2b7d095d

Size

42.40 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/centrifugo:6-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/centrifugo:6-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/centrifugo@sha256:4e8abc79060f281901a62b0b418a9727d84795c572edbd2f9bbfa9a23f8ae773
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/centrifugo@sha256:18514a48920e15afa74f1a1edadf0e8df159152373aaccdc71a06701118646fe
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/centrifugo@sha256:9b03c7a1135a42734d7c1ee11c5ee5cbc271f82bb206f44b1620b5b35672e5ed
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/centrifugo@sha256:c6de4677b73b7a09a505151c308a6988ddf0e478fd2b097ce2f4534bb29552ca
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/centrifugo@sha256:5454d8175d428a24162f118c8a81be6484ec2380c329f244c9033e84380304c9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/centrifugo@sha256:3134ef4e030f1edc621b8d122d663badf87b4746bbc91515f8303b8828cd4e46
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/centrifugo@sha256:710bac6437e409f10405cd677f3e88305fbf47e777db982e761de854fffe64ff
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/centrifugo@sha256:ae4faa9ba4de6d6e621f791446f3054429c3bbd23a3aba37e7c7e65c0d0ca2b2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/centrifugo@sha256:c89dcbfb06663a0e75b94507ce38c150c3724d55a18c4c48b12f2d3d2308394e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/centrifugo@sha256:6979f9e57866528394e2f762ec20343f5e25b5f669b5975244c2f36f0411847d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/centrifugo@sha256:53bee818c98c2187b11bc6611a1d2c6f31a1af7c7bc05fe4ed923dc6c35f58ce
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/centrifugo@sha256:ee987106aa66aa07efb799fe1fba81260d7541f0b2fdc93eea5d66b62cf3127b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/centrifugo@sha256:abcd8d6ee31cbcb21958b802fb091a9672a72f254c442fd38cb7cac2050700f6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/centrifugo@sha256:02951172a407160a4bac7b8dbb29849d20f00a235c376c4cc42f478cd2a4ab43
SPDX SBOMhttps://spdx.dev/Documentdhi.io/centrifugo@sha256:b2be53b98e8540e2670212060308f69f1e17216bdba40fee1570c69eaa9b33f4