dhi.io/cert-manager-webhook
1.20, 1.20-debian, 1.20-debian13, 1.20.4, 1.20.4-debian, 1.20.4-debian13
sha256:89afae41a94b24d89397798fe39fdeb25c7af1579ceeb8b98db590fd8518f064
Manifest digest:sha256:3e49543692569aa9a9615c634cae3cdd9ee13be445372811d0a142c36bae61fb
Size
16.46 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/cert-manager-webhook:1.202. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/cert-manager-webhook:1.20 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/cert-manager-webhook@sha256:a6f99ef2c9a967ce4673a020b5917e1142e87a33b18a9bb00af6923b8ece92c2 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/cert-manager-webhook@sha256:4a3123f50e6024251bba06f0644f7a42c8a3548cabfb9006da32d974b65993ba |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/cert-manager-webhook@sha256:3d9c5f83e31b418d068ec9cea33fc05db35bb19e9d0a0190747a758e51eb04a3 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/cert-manager-webhook@sha256:d398a213ead2769dc6b3046a8b2789b600fd17d6b0914b061fbcc9a2a3f62537 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/cert-manager-webhook@sha256:a48e4940bc1868a73e83e810809a3098bc0fff2fb65bb7a1dced36d4c7450ee5 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/cert-manager-webhook@sha256:a9ecf3c725a11869294d4d9ff7a7fefdd25317e34965aa1c22616c52cc274a2b |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/cert-manager-webhook@sha256:1bf1c24329a9994374bb2e63fd8bfa6b0aad4d8c19049868c9696b4a869f6439 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/cert-manager-webhook@sha256:a39bc8cecc9d4b0d1f80fc66b12448cca78021187c5e888b60ef9d506a327dbd |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/cert-manager-webhook@sha256:6574c9e703a5f6bfe26cee6bf31a0469c3d9374e903eefdb1b207b9cfbcab3ae |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/cert-manager-webhook@sha256:efb92c302b78b9722d21e933f1855f33905da5d8b1c9f98f20788b52740837e9 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/cert-manager-webhook@sha256:9317a868efa1db7bc07e5ce45b9159f65cf82035a419dccb246ce9acde2e38aa |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/cert-manager-webhook@sha256:c863a1091397ddc91d120daa03ad7945d6009790d6fbaf7c6f00811c9f70fa75 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/cert-manager-webhook@sha256:e063431aa362de80f7968e33c6e1dcbb185947814c475f162383ea6508f77139 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/cert-manager-webhook@sha256:c0333821c9860acda36d7c4ff8924a9dc6ed3b00a08dc50e56b658a4699a8f50 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/cert-manager-webhook@sha256:e05fe26dfc11e24c9b04df713d3edeb52cbb623c183860101ca2409c3d40158b |