Sign inSign up
CSI Snapshotter

dhi.io/csi-snapshotter

csi-snapshotter 8.6.x (dev)

CIS
linux/amd64
debian 13
Tags:

8-debian-dev, 8-debian13-dev, 8-dev, 8.6-debian-dev, 8.6-debian13-dev, 8.6-dev, 8.6.0-debian-dev, 8.6.0-debian13-dev, 8.6.0-dev

Index digest:

sha256:8ffb71e8c92a71317f5cd1d493c8fdd63dd0746a80810542876ee80035c1e5c5

Manifest digest:

sha256:ca6414e4bcd7b910540b18a13b8834f83e21a0f9e10d921464b57d5cf012b7d3

Size

56.19 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/csi-snapshotter:8-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/csi-snapshotter:8-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/csi-snapshotter@sha256:43c215bfd8e18db945eb71c01e1a38bfe6990627af879b51bad8aeea7d2f85d9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/csi-snapshotter@sha256:5a3e8e35809eab232ec6de51dd1525b3fa1bf1fc428d6d6d7b485bfdccb0135e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/csi-snapshotter@sha256:3efa6138e3f7b32e71b4421da7bd5a64595bf8d2489c3bf7cdfb58e089121d7a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/csi-snapshotter@sha256:593c6dacfa4cd83c2c8488e032b13baa1b18f1af94773af8c90045dce22c5876
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/csi-snapshotter@sha256:db8fcb2a377065285468d7b1d77bb3930103c8f8f26ef443f2c4a07da8282541
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/csi-snapshotter@sha256:5a11a8474bf95eb27df4820e176208b0e33fbf405b12297402cb2c2fb6ec6626
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/csi-snapshotter@sha256:2d85fc970555f9a6cf6cd1683bd28570438fc932dfd3ae77432d3689a0c3b69d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/csi-snapshotter@sha256:451c81f259393593b8867c3e742b2f882fdba792ddde674fe0d00adcc9174953
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/csi-snapshotter@sha256:1a7a73559909afe16ad9a30ed7ad58e5fa714fcce0e140b79cc0c8c669dc658a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/csi-snapshotter@sha256:2efc8e41c7b97be0a694f071ad5b09498a4e85f703de04b61fbd4bfcade7dd78
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/csi-snapshotter@sha256:184e6b5cc91e6b8fa7b7d19375deff6b08fc8983bc0858994692cffeac451066
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/csi-snapshotter@sha256:22c2bcb45bc4a396af8907de9ebac04225a5157664c336b4305e4ab91d7943a2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/csi-snapshotter@sha256:eda8726b1ac1aa8dd0fb570b4d9bd72d58dddfd016274069fd37b1ef02ac2bec
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/csi-snapshotter@sha256:43bb6bb46520a28ce47910ac085b08ed75c381e5d3c5a5e976b4e0874c2cca43
SPDX SBOMhttps://spdx.dev/Documentdhi.io/csi-snapshotter@sha256:ddc94ff3485cb217a7dbd850aad6de374014d60c1d12e2d9ce25bfee8a32b7b8