Sign inSign up
MinIO

dhi.io/minio

MinIO 0.20251015.172955

CIS
ELS
linux/amd64
alpine 3.23
Tags:

0-alpine3.23, 0.20251015-alpine3.23, 0.20251015.172955-alpine3.23

Index digest:

sha256:89e879761e2328f683f6f10d3addc5709214b491bf95efd04d21ae53fbdd0541

Manifest digest:

sha256:12fa37ae7cfc3fe8bfea70615f6db8334f1f1be601314fa9acf3cdc70d2092c7

Size

33.82 MB

Last pushed

10 hours ago

Vulnerabilities

0
7
1
0
0

Support

ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/minio:0-alpine3.23

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/minio:0-alpine3.23 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/minio@sha256:f961761411b2c6e3f8efc8e9538d9c5b612813f00cf2d2012d7c4d1b2d923168
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/minio@sha256:3a662929db33e030703c32533435bbf524faf2ece537eff398349b4579ae7dd2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/minio@sha256:3f65c1fc3d19561cef7e8ce2a96caf18b9e8866f01e412243ab0aeb1e247658c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/minio@sha256:987c383d8d7ed14fd1102b2a5d3151f07b3072d1d08c944f8e36c6807be729a8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/minio@sha256:6c150c715222b56d0aeac00a14c9a2df6ed2ee6031a83b1a4a820fb2b115c688
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/minio@sha256:881fa02ab44464049ff21dd13baa9a0cfb616a42be9fe54338352f1aae9c044e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/minio@sha256:a31ae75ab6f8e6d0a7d953980722b42165dd2d8f71c204cd5aee15166ccaf478
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/minio@sha256:f6a4aa0646eb7f569b8afcd85e264e476f1b4c6bd47255994712b31923a481a0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/minio@sha256:1eedfc72735020ce1f2e4139386d81845b27e3f715d09980796fd6589cf737f3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/minio@sha256:8248bab8f9556f9ebe7b2b60d8583ca988b34b17acba67a6f51fc0244ffc1079
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/minio@sha256:d595fbec733294de08710d59d200bd3c90d6727c990c7e3c080d4744f52f3558
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/minio@sha256:0a0ae5f1f9fa5dcd203fe45f2d2e6fffc108a4e5f0d321209c7afc2d6648292b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/minio@sha256:0e3f8f2406d60a979f38b67c2980eeebb1a693e39600ac6de605c5dee37504f6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/minio@sha256:4229aa63f761ec530b192d7b699cfe9aca48d7e66afcd980283530f9fbf12259