Sign inSign up
Google Cloud CLI

dhi.io/cloud-sdk

Google Cloud CLI 584.x (emulators, dev)

CIS
linux/amd64
debian 13
Tags:

584-debian-emulators-dev, 584-debian13-emulators-dev, 584-emulators-dev, 584.0-debian-emulators-dev, 584.0-debian13-emulators-dev, 584.0-emulators-dev, 584.0.0-debian-emulators-dev, 584.0.0-debian13-emulators-dev, 584.0.0-emulators-dev

Index digest:

sha256:d27012aafdfff15a6221769229f510230c862ce981ec88915a0621c94f61a594

Manifest digest:

sha256:3a53a2df702e7b1a124a74fa22ab3852a7e2c149c1e9ea18a5f8f86591fcf683

Size

326.66 MB

Last pushed

23 hours ago

Vulnerabilities

1
4
4
12
2

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cloud-sdk:584-debian-emulators-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cloud-sdk:584-debian-emulators-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cloud-sdk@sha256:9d9e0a882c253c06c6379f35a7feb61cce0f8b20260b4601b95510a961327dd0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cloud-sdk@sha256:721559d535e9d1cd4914b27ac761369cc3cd369bc39a9087daaf7585cdf2d2b9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cloud-sdk@sha256:1d9773c1a36d97232ad421e1436b40c12101222e09574a492899dc4c93437676
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cloud-sdk@sha256:c8b1a71c7e152ed3541db8ef7736501ac8cd298286781fdfdbef46cdf98b1684
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cloud-sdk@sha256:91c0705f2b3c07d4546b06bcb1996c2c050a46d2df3d864df32164588f1d1ece
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cloud-sdk@sha256:7a3431fcd53253b943899d618382ccb2f1b07f8aad2d4274300a710303d95f55
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cloud-sdk@sha256:26d53d98468f1e398d97856e0c89fedb9c4973daf92a4777537c124fa46169c6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cloud-sdk@sha256:d78fca38bf7ae6a535a67961b060eae747ff209dbf1b53aaff156650c96af703
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cloud-sdk@sha256:a22114f35af8423dbb6e84105e0c8d4695f2ca107ee344259f6b5d3a0eaa8ede
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cloud-sdk@sha256:f7c35f33a0ba4bf777be2282f7b31d8c6c5d7da532f2181b90d3695750f29002
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cloud-sdk@sha256:4dd424828a9d243c77148d32982234f7eb8de465988f58259b1e4bf92d9577ab
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cloud-sdk@sha256:75dbfa67f06cecb0205f9264e8e79af27401b8a9a28b083f09238fde8a52121b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cloud-sdk@sha256:477b5dd38ccf9c94b04208f4cc303e823feba32b19859fb28325ce8c2a45fa02
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cloud-sdk@sha256:854543fef944bab95a2567e0fe0c14f6edc5fa5a95b820c6ed77072f36010b9c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cloud-sdk@sha256:485bc5bfd4dc078d0e7704cc2d5e0cdcfe07500002998793daf7b7846129297d