dhi.io/loki-canary
2, 2-debian, 2-debian13, 2.9, 2.9-debian, 2.9-debian13, 2.9.17, 2.9.17-debian, 2.9.17-debian13
sha256:18a28bf3186ff347e2d769715809ba8d30a9b7b9b0f7128f322298853083f5d7
Manifest digest:sha256:4c67f7d3065c81c0d70a13040f75ab7f0fe81f115c94742de44ed4d1eba43438
Size
9.79 MB
Last pushed
2 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/loki-canary:22. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/loki-canary:2 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/loki-canary@sha256:2a976ca39b9b3746eaa29239cd0caa98c9c7466a3b458f63ef7c96b122fd67e4 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/loki-canary@sha256:a3fbb2fef2e2b18e8ff066cce19e390307dcc78f84df3a32d13270d9ddaa2749 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/loki-canary@sha256:d43ef25f2917fb44adead031cf23c57f2314191a2f533fe4df7102a825f41b86 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/loki-canary@sha256:66a4ba77e4c0f4561d7975cd913d5c8652ceaa7b6b9023d71efea1b9af163c39 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/loki-canary@sha256:ce38afb61835ffca93e969b95ca50e6387b879fbc8be3c5725e34520cc5c47cf |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/loki-canary@sha256:151e7d1ac410160c9fc8d43b35f7aa64c75a09a5bbdb2e22b0b2036f7d211256 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/loki-canary@sha256:8a471e6b4645a0644868f5789d39859f7397c2e468fb3a12cecc0b5c37896441 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/loki-canary@sha256:c32af346beb3bfe6efb793e34e0bbc7808323d02949d656f13f3fd535649cf9b |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/loki-canary@sha256:f4b23ad8910ca2967681f381b1035a3bf41d8e87f4179ff758758a1607c212ff |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/loki-canary@sha256:6c75b119f9d470f65e92d8aa7248cc143be3d01f00a6d28c472fdff888580c43 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/loki-canary@sha256:69cb8d69f7e0b5410df7ba72cd1cf58b5d9d4ca1e26c8bdb21101e7ad2e5afca |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/loki-canary@sha256:16178ace1bbc4ea98c3455fedff0d873e185ec47dbf885fe98eb0b195988d744 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/loki-canary@sha256:38f588aa1d15d5b19a08a90ffbc128f3ed74031a44d11762ddbdd52ee6ae1460 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/loki-canary@sha256:653d180ef5c6f98ec9c2cb6a640bb7a7f46e8b8677b42d763144fc66b6b9ba99 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/loki-canary@sha256:e1321492e867f759712457728146addb3ce5b77f0eac9c52caf69f6dbd598932 |