Sign inSign up
Google Cloud CLI

dhi.io/cloud-sdk

Google Cloud CLI 585.x (emulators, dev)

CIS
linux/amd64
debian 13
Tags:

585-debian-emulators-dev, 585-debian13-emulators-dev, 585-emulators-dev, 585.0-debian-emulators-dev, 585.0-debian13-emulators-dev, 585.0-emulators-dev, 585.0.0-debian-emulators-dev, 585.0.0-debian13-emulators-dev, 585.0.0-emulators-dev

Index digest:

sha256:db9f744560c25e91f30356d30a1b1b8e201a1a39966a889261d438d16d5c90cf

Manifest digest:

sha256:5021647db90a934505ce4eaa2e550db7d5e6437d718c1a6d704751657d878b35

Size

327.09 MB

Last pushed

13 hours ago

Vulnerabilities

1
5
5
11
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cloud-sdk:585-debian-emulators-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cloud-sdk:585-debian-emulators-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cloud-sdk@sha256:d372b9644453650a0247e956e59f5bec60084a0e4224ad9b2567243db855ec12
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cloud-sdk@sha256:5f83493ccd9ce67b4a65448870a415a5f0231ca870b1c5cc339dcb5cf9acf11f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cloud-sdk@sha256:b160078d29b65dfacc2437c81b050c6fc1f5ab52dbd83b04338504db72fd494f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cloud-sdk@sha256:867924fb98051e4ef782696ea388bec88b4cbac5cadd927a06926709185d1ee5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cloud-sdk@sha256:eeb1e5c1ba33205ea157cfa4bdb4d7a0d3b7600e208096fdb1a298f9bc296333
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cloud-sdk@sha256:d0243e1527688175481dad11bde4e7014bb2ab48e942f1cd1910bc2e223e7289
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cloud-sdk@sha256:37f7b261386cc5f66afb635b6657d9497716f663c7026dbd734b88bb7041a430
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cloud-sdk@sha256:34554367cc1f3ba1f438376a34e58d8ecfe5182eef55c2d5b05a1e8461f34fbf
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cloud-sdk@sha256:410df26c0287dc24e06289a1544033ba6b40367469045100a90c361464373c81
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cloud-sdk@sha256:69c68f2126628f1531d0f1ad4354e7674af3d0954c9c9bed549d34ad98f583c5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cloud-sdk@sha256:77371e4ed308f7f11e0cbd723b14bed3acb1a75533f6f1a893ede5510db1ccfa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cloud-sdk@sha256:0f7368db2539d24284a6d2b56b3a68b8754cca4260ba02feb9bf0b4a1111aa04
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cloud-sdk@sha256:0a84b0652abbc20f24ff8ad398bbfe7ff83b1d5360f43474a0d051ae88b923fe
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cloud-sdk@sha256:f4abf00bf259bce30546de734641d598f2b496c256862b7c8bf588b11bbfd5e8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cloud-sdk@sha256:032b2e5e72fec89d2621fa1b750455198a6b6e7ca01b3585bdae624fa77f3d7b