Sign inSign up
DataHub GMS

dhi.io/datahub-gms

DataHub GMS 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.7, 1.7-debian, 1.7-debian13, 1.7.0, 1.7.0-debian, 1.7.0-debian13, 1.7.0.1, 1.7.0.1-debian, 1.7.0.1-debian13

Index digest:

sha256:4b0715e1279bf20abfd51b9c4b3f3c296025629ef238f4e1446b8ba33c467f54

Manifest digest:

sha256:7a03f3e406e308c334d1dd1250611a7d561b231514a7215581ef0da3420055b6

Size

600.98 MB

Last pushed

19 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/datahub-gms:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/datahub-gms:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/datahub-gms@sha256:2cf5583c5d551a346e855b3de34002384ac2841bfdd558f037c2992de54039b8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/datahub-gms@sha256:8a1b356b2180fafb7d25f6c88c6e9518273d390e52ccfd567454016e1745a82f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/datahub-gms@sha256:3e639d0f30ec9e613b8df72ec7e0df14c4e84f23786f50349cc4f3edc4ccadca
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/datahub-gms@sha256:dfcadfe9704a833ed8fc0c1fc7157d88e62929968044e7408a6434480a1e2c3f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/datahub-gms@sha256:e99120f3145448aaa3daefd6f5676a672073fe14e8c0d53d0feb1e94a0981542
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/datahub-gms@sha256:934d927a7a63c3ca9cef201b32ce9f7cbdf521b00e3e44ec452b76fb66abd5fc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/datahub-gms@sha256:8943cb6bf7bd3479c0c71354826a301208428ee962ec0137a182e60cc75fd9d0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/datahub-gms@sha256:8c0a3bdff507f934ea8127e62cf6cd8e76cd1692112dc6c04159c728c5cc3f10
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/datahub-gms@sha256:3580ea81f5dafeebba81dca43ca61d3a5930bcdba7633878c825e6639f24acb6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/datahub-gms@sha256:9376aacacfb43f34ff9e12681da7bed2b1824b389309eb39cf1f470d2c8c464d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/datahub-gms@sha256:3669232f5f5606edace239b1d9f15a498ac9abe48d18d9ce47e4d3ec68471a71
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/datahub-gms@sha256:6bf2319fcd370e7ee91125fc4efaedf7aa7720afe3c85ac3e9863eb2c81e8cab
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/datahub-gms@sha256:a4e4a5df7bf8f9a695496a045734c457ba82303a3c00644f7ae00ef849d61f9f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/datahub-gms@sha256:b7ad1c7b8f4e22eb3a17a8a008b24ae2c5254318898b31b895cb87b70d262cc3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/datahub-gms@sha256:b8da96af6c210dbed24853255cb340faf4c6d6ec902f4cbf0bf2346214d50042