Sign inSign up
LocalStack

dhi.io/localstack

LocalStack 4.14.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4-python3.13, 4-python3.13-debian, 4-python3.13-debian13, 4.14, 4.14-debian, 4.14-debian13, 4.14-python3.13, 4.14-python3.13-debian, 4.14-python3.13-debian13, 4.14.0, 4.14.0-debian, 4.14.0-debian13, 4.14.0-python3.13, 4.14.0-python3.13-debian, 4.14.0-python3.13-debian13

Index digest:

sha256:923f7007a72e321b2d1f7df3e0c0000c695357ee9d18b28acdf86e6462ad1dd1

Manifest digest:

sha256:a7ca6af661038de6ac142d6c12b699f276ac84483c5cee18c3a9eb60c30faff9

Size

125.67 MB

Last pushed

23 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/localstack:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/localstack:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/localstack@sha256:c80b443e66cc1f4b855641b98d2c3a493a4803b19a40e2b123ee8c102bcdaaed
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/localstack@sha256:7ec3a1241a228293a8d5ea5e0c65eff7b9b32ab824838680313da691e1db6e74
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/localstack@sha256:36cde7a7e29c01eaab75de41e9687931855ae80b3811d90424094d612ed5fd71
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/localstack@sha256:343736172d1ba7a29e1cec5ccea77794d369e895290dc2347e1472c1857941b3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/localstack@sha256:c1572ad6895efc9202f01706af8e6a246126e425633b885593ffcd4a2d6bb4f2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/localstack@sha256:37dd799db5adea0cda3306ddb28a065800eaf605f215da321e811d28bfc44277
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/localstack@sha256:e160e3f9650c51aca867f84031c659faddead73240de10abc20e74c3cc0ee0d5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/localstack@sha256:9bec024113d4af3a86766a28b63ea650013782fdc7c6c6726f241048a90dff4d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/localstack@sha256:8f18985c09229435221689ca629a38b8a19e68aa6f8ddb4b3eaaee8d0910702f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/localstack@sha256:41b512d4c3e2049e5c7e02a937a3a0f4dd0f9450274e19d0973846607aa5748b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/localstack@sha256:e576c9c7f6ff24103467d6cb263b52d2b63808ffbb413e8a5c83f33133053c32
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/localstack@sha256:9d3849a1b4449b7f014a80da55643666af714bae03a898e248c645018f88aeb5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/localstack@sha256:32ee4ade8c91760635a60db73778aff68d0a76fb56f3b3ed6f25eb6420fd7b11
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/localstack@sha256:ee69665368b445f8c0148f7560f30ab995393d3e011de6319673204ef8097d78
SPDX SBOMhttps://spdx.dev/Documentdhi.io/localstack@sha256:804ae797d953f6e4160bd1d2f8113c8461194946e0e4e826362ad08471fcb9e1