dhi.io/jruby
10, 10-debian, 10-debian13, 10.1, 10.1-debian, 10.1-debian13, 10.1.1, 10.1.1-debian, 10.1.1-debian13
sha256:2507681eccd832c50d0886f704a7328435252a64381dc919e2c239ecc1a861fb
Manifest digest:sha256:a9ff02e4fd3ac66df7554127e3c64b4670395c9c6a9aea8fd3ab4ef6312525ed
Size
156.45 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/jruby:102. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/jruby:10 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/jruby@sha256:5b4895f955f1fe58479e3b9a42ea4de4eba08ef86488f6d287df35ddec0855ef |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/jruby@sha256:4fc0d21b22087efe25239624db847103fc5b11f9ae67bd2370563c0e7fe45285 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/jruby@sha256:65443f14ebb236f8f9bffcc031549c53575c050ce14b86e7ae0a6195c910e13c |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/jruby@sha256:1a434ec7ea66444f0a7227cc5b4232a062d78326b1b9f5074be59d7d49174b7b |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/jruby@sha256:3bdffce5573e82578493798de22a40f883878324aba0a97ba6944f3360d011d2 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/jruby@sha256:b4319a1977830234d485d38fac9867620f22796de0fe138be072437d84984c6a |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/jruby@sha256:4ab0cc2b59c1b7fc8341805817986d47a9f65e1bc413ad4986c8b1d0305e2cb2 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/jruby@sha256:742ff0a2caf0f23fd02812500f6f92bd5e922679280a6487b6a635308db746b5 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/jruby@sha256:c3bd1180c844375ea08dce9718fdb210af1f454cbca199af123be27e03b0b128 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/jruby@sha256:3d75e62815091bb2aa5933ffcdd89f6adaa72ef147182e3e4c112437f11cf0ff |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/jruby@sha256:200ed37de6c1a90fc1c7882413e8e23c6b0d2c03ba66643a9cf674ba7874cf0b |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/jruby@sha256:036462270f7fdadd0423832b0618c5d34b36a8c3658c95c49622ed4355bc0186 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/jruby@sha256:0a7c0502aeaa279fcdaf1d9dbbe63892324508fea78b031bc879dd667f47f578 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/jruby@sha256:95df99e6f06c02be1049dd26988c2827ebb5ddbc8e1c82b8bce21b3aefed108c |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/jruby@sha256:c99a3314e3a2d4aad1eaf71d2147941b2ed8cb3da10e2f3112ebd05e0345efd5 |