Sign inSign up
Dapr Injector

dhi.io/dapr-injector

dapr injector 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.18-debian-fips-dev, 1.18-debian13-fips-dev, 1.18-fips-dev, 1.18.4-debian-fips-dev, 1.18.4-debian13-fips-dev, 1.18.4-fips-dev

Index digest:

sha256:2c4e56928296be0376eff551e83c72e8fbacef5e72cef2b234ff68c2a1578fb7

Manifest digest:

sha256:462db053efecda02f0823f2cd8b1f2b2fdec3858c8fdf153804f6be53b91a34e

Size

51.17 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/dapr-injector:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/dapr-injector:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/dapr-injector@sha256:608a793a342e1bc155620b9e93667a3df91ab530bf7f43201a8c0810292daf59
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/dapr-injector@sha256:bf3a97bf613497c9a4b525685422e0974868a21a73b412a1b279118ab4de3d54
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/dapr-injector@sha256:45e66ba3e51e0d1b6feb155c3ec31bc96dcf648cc4f5f33fcd758efd68dfc3da
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/dapr-injector@sha256:9456396412f7ae36d6c90bb3a395f4d04dd64fe290a6f2dc42166ab5ddc73bcf
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/dapr-injector@sha256:75a25b982da1267f6fc5b081f51d26e43cef85576f800a6c3b013fd814172841
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/dapr-injector@sha256:9928d0b57469e82f3dcc14e5553ac77e4dc2b3e891cb3282fc1cf16f32dc61e7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/dapr-injector@sha256:e9c50737505d57f2550707f2bced165ef6b9f05894bc1a526ff5fd5d57c58042
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/dapr-injector@sha256:8b71a1852d7233dd3df7d87374f9b9a92b577e666e9a35d7bbeb8d05ec86e7e1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/dapr-injector@sha256:d73e0bdce6a764d7d3bbe8aff8c10e82fa18c154949426cdeeef8e0d1fb2fb85
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/dapr-injector@sha256:82e8a1addff3b5bb48b9d0a64bb6edb6875fa5bd07426a98306c5cb0a06f6c88
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/dapr-injector@sha256:0d5d41d385c24d1c28873ac1eb817eebf0898034307339366660b6df250d75be
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/dapr-injector@sha256:1767f6d47e7418b4c8e100f156ec650f0cd50eb087df4f6c589b56c6fe81d33b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/dapr-injector@sha256:8f8c88c673bf94e05ed301e5dfdb034c140693c8b58f5551086c5bdc7a8da6a9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/dapr-injector@sha256:a38b9ccfcaa2063f7d6df6192ea956b42252d1aa559f02daeaaec3ae09de51b2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/dapr-injector@sha256:b41f8856572d0770db154c7383618d91455dfaa468c66c28cf23a2e8ebfb3e4e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/dapr-injector@sha256:b007a0f7fec2716ac8f72779e8f836a8c5c41d79f2e9cf904979946bee0a2bc4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/dapr-injector@sha256:c11ebf445897150050a57244a27e7dc336bf3c80586da2114a681919b9667fa4