Sign inSign up
Kapacitor

dhi.io/kapacitor

Kapacitor 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.8-debian-dev, 1.8-debian13-dev, 1.8-dev, 1.8.7-debian-dev, 1.8.7-debian13-dev, 1.8.7-dev

Index digest:

sha256:cbf4fdce636b92bec9eb9fa8965ea305b9cd15c0ecec0f8b68667a1560845854

Manifest digest:

sha256:e016b06528cf2ce8d1479af13ee69d23e217011b1a147988d7a67fd725a7f797

Size

104.00 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kapacitor:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kapacitor:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kapacitor@sha256:ac8b0a8129ec57a7490c6120dcdd20361ddb64b87f3cc81ad46006ee0bbae10d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kapacitor@sha256:9b448aa6b40ee01e69baf9c515367afcfc290b2febe66ca2e7bdcbf3c153a50f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kapacitor@sha256:fcd6809f8d2553b187defe8f2886de51639f927b0d7cf539778708cc98440864
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kapacitor@sha256:7e3f5436fe4e3f18af8c5a4ea77d2d248f3bdfcbd5cd655811bfaf803168401a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kapacitor@sha256:4e93b2b0fd4b5dd86c29b640ce2e2c4673ff5dac0aa002d8f9ca0731872ba95a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kapacitor@sha256:e89aa9c03d740ecde443eddb63055d7179e292c6a54464771ace99ffb127cb31
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kapacitor@sha256:650a23f4de3f547c1c152382d84aed0788f4ad1a18ecf748f3d8f6200ad40e57
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kapacitor@sha256:66c6c1604ee1bccba0bd033f3e7395837c1d4cbc3e687a0e48f8d99c4e609c5f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kapacitor@sha256:3861e1618af00a90feaa75e95b6fe582734180926d626848b24196b0993975a8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kapacitor@sha256:739d449ee4bff2a838bf3e35d3e75139d00d1f1db48f91e2a9b3bb2a63a23a25
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kapacitor@sha256:3ee69c95454c308de56056abe779b10b5db19cdad0fb07984b1defb363870c3d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kapacitor@sha256:18d4f0caec4664c13e0fbc9becb6e1ecb42134e0a8e268b9ac6a5d9cd9f109bc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kapacitor@sha256:bb0169b718a0f464d6bea4686ca2af510ad643772ea0bbf7d8f890ba4128ef31
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kapacitor@sha256:b0795ee9f1841e313b48c92d13c8a789223d5f81f2cfea6149db4a01018a0c45
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kapacitor@sha256:56d01cc54deb373fa6d2c0077d0f0c318c1f38a24743a1084ad7426fd4fd491f