Sign inSign up
Delve

dhi.io/delve

Delve 1.27.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-fips, 1.27-alpine3.23-fips, 1.27.2-alpine3.23-fips

Index digest:

sha256:181b1d753037934d2e3ab96c68037c391237a8f05721d901fdfab866deaeb32a

Manifest digest:

sha256:9564e38195caa37ab252a9046edc8eb4ce456edc47259df8895591084799d52d

Size

9.51 MB

Last pushed

6 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/delve:1-alpine3.23-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/delve:1-alpine3.23-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/delve@sha256:de1ac87994f6d521db154f10dd93bdf4b67f03cfaf2ddd09c39ec03f36c1fa26
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/delve@sha256:933094f5d80c9311c525af2d4b917b5d84aa24099f4ea38aa229afd9a39efcac
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/delve@sha256:d2271148db8069c60af79dd44735210c223d5e128c3f95a594993e40a9cbb126
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/delve@sha256:9716d2fd9213d810d07c0d6f113081f9ac44bea881a38812a1f4bd33a7b131f7
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/delve@sha256:99fff4033b4ccc2c2334e58ed4aa3553d240b001b08df8b4f315aa12029264cb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/delve@sha256:685a840ef841c62d37d37326958de5d4d5de43753185c56419a003c2ec0d3556
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/delve@sha256:943b0c536fc417a562e9a0926369bd02b651a6131e51c3df16d80e48e52932cf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/delve@sha256:1b8fca37289dcd7316e765dca2dee001b7798342ac6d545dec255f8c51fdd1ec
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/delve@sha256:1c1200fb0c2e37a68fc6c4050fd07230ccac77756e011251e3d9807f2d0046ee
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/delve@sha256:a9ef74e6ec0bb32d8e6d08833e5c748277c6a101e9e8513f51582d3e0d24eaa8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/delve@sha256:b4366841f5bb2e7bc03532e5ae399eb0fbf40d548c3e44a0793344d8c38fb503
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/delve@sha256:bb5e083876beff5ff05ad7013ebf95829a3c51373d10014c055471a53a86f044
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/delve@sha256:c1e2f9a76e41195440b150247fb6b4b1ee02a9504201d311c4973d079febaa09
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/delve@sha256:b9509745236d8de9c6c842bae7ffe48170a99d376692a3bf7aeb08cf8d93f067
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/delve@sha256:5b05c7f87c1f185108a0e0d062b307ac8924dab0d8e94e63b3a03e6f7fa0973d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/delve@sha256:4f55ddda1069aa5419c5690521a69fe9c72a7ef5398d2e5324c50412601faf33