Sign inSign up
Dart

dhi.io/dart

Dart 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.13, 3.13-debian, 3.13-debian13, 3.13.4, 3.13.4-debian, 3.13.4-debian13

Index digest:

sha256:c69deda60adf63e732167da59323282d6caef1d03ede2ace15cca0c1f8bee727

Manifest digest:

sha256:cc1d5d6a07244446239be2bf6e310b63272cc9235e00cff4c1437bd8d408a5b2

Size

205.91 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/dart:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/dart:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/dart@sha256:0b183c601ccaf369eeaef8c91b4fd7c4a33791f6d0a993f6b4fc863f1ef36484
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/dart@sha256:82b7f178dff5b8f595fd92ff808dcea6734d9b1ed7742cc337deaef6895d385a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/dart@sha256:206f000c8fc683c6d6c052d226aacecda0535847327e4227677bce52deadcf8a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/dart@sha256:041afd8bf3c0fb68dffbc0696315b504e5707ae374e188e37c343980d177b47d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/dart@sha256:0e6aa2de7a4d19dd7523d703fb19369acc24d12dc5a9edbb0f4f1a07789683e6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/dart@sha256:3814f7aeaf13b4115b13b04e2770399ebcffd9be0149c39cfa0f36dce3fe39f2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/dart@sha256:737e271ab7bd5b93158ec077f70805d33f5b5b4132abc2e2f506f6d88a2df580
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/dart@sha256:019c51df1517e0d641e5b511444d8a8e7435f17b855447aa59fea4e767c7c1e5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/dart@sha256:423fe1cea98218b415af727c98097cb2bd6491cc891c16b4a47beb91496193f6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/dart@sha256:0b5bbc6cc496f1739853c1500881fba29f754d7747f77f45748515c58800c56f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/dart@sha256:d2c0b79195b0af94b013875d4b8549c1d3af106fcbe98c1059d7cdb1591324e2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/dart@sha256:c36b963fc9d3ee88d27bef404f9ea78621aafcb3af3f520f23e4a2e38dff8a02
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/dart@sha256:e018e007ca5867d85107fff978cca3dab620d085f10a8fff079c73b881105fe3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/dart@sha256:fc845c5dff159b8f2bd191ebfdd443aa71e58f0451158be23647ef10071aebb3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/dart@sha256:045e419c7a2e9f86aa97d9ea6bdeabdb1f02b46ad347b0471d34bf8120e0a5db