dhi.io/kafka
4-debian-native, 4-debian13-native, 4-native, 4.3-debian-native, 4.3-debian13-native, 4.3-native, 4.3.1-debian-native, 4.3.1-debian13-native, 4.3.1-native
sha256:a2f3da33931373262d741941432f19170c5e2d642deb9ff7e53e69d6db9e4bf1
Manifest digest:sha256:e29c535e1976d23707a8cda24d97defe92a09606ba1c3810f2df67c6564ee6d5
Size
49.15 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/kafka:4-debian-native2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/kafka:4-debian-native --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/kafka@sha256:6087e984d132488c7ce7653c030547d3f56eb3cb1cc5ba821d08ce4c3d8c887c |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/kafka@sha256:fbae252672273996d62bf9eef5f83784ccb122debcafd647048a7b0afffb596f |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/kafka@sha256:2a383910745dd810062f9b7e61328976fef7cf982aeae38627a94213aeca7a4c |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/kafka@sha256:d8ae6fffd68384a1a10d5b8d6c1c1497c32c4ed9b353901bc353cf1055936b30 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/kafka@sha256:252780bb9f916be9b1186ce7dbaa60e32ec6b8ea61baba27bad7cc242466206e |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/kafka@sha256:b577a2cba12db6ffa8110b1271520bdb420079eec1b39f0fb5d5a344f49924ad |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/kafka@sha256:c39777b9bfcc16de1a971ef48821746fc915f568f09f84ea2fa8a0de978084ad |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/kafka@sha256:170b6d01af9cfb1f65092a9049d1becaed7497a56171d78f0464e924d9097923 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/kafka@sha256:3ec4043e0b9cd093e5bfc833e7f97067d89a52f78004c317ee4fb8cca5e90041 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/kafka@sha256:83a3936fdeab768c5d4a9bef246d49da9e6f726fb7e2e84c97667ec58fe2a44e |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/kafka@sha256:d763f4f3ccdc2603908a42f20ab6ee48eb1d0cd4960a7c07406f85ec683bf324 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/kafka@sha256:6f6686a9f55e6de31f91fcde7c0694ad8a9d0639fb6b450126decf9f9e178579 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/kafka@sha256:50053c129526036638c401dfdb622a0ae3bf830ad5387cab2653f61f0e190695 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/kafka@sha256:f1f02d9fc268e8dff1515bf8a61e859c7900cd93d6586b41bfb66a8f837545da |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/kafka@sha256:1419ab9691e2eb10c315f0c046cde3a35e236ed38891a482680bb87bcca73a7e |