dhi.io/neo4j
2026-debian-dev, 2026-debian13-dev, 2026-dev, 2026.09-debian-dev, 2026.09-debian13-dev, 2026.09-dev, 2026.09.0-debian-dev, 2026.09.0-debian13-dev, 2026.09.0-dev
sha256:8827458aa9d9011a3aa61013c6ff42381dafca77e0af23374df1a35b0a287483
Manifest digest:sha256:bb98c12661765b198cdc4e41888e8059ad8cb041b7886d772cefa60b406af2b0
Size
208.40 MB
Last pushed
1 hour ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/neo4j:2026-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/neo4j:2026-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/neo4j@sha256:0701fa6fd66fea67ecc0ecf7de140b91474bcacf4ca04a8db002ea78b607548a |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/neo4j@sha256:477e6f1d92ec554b2ff29b6c242a0ff8702a684cb507ea0f27956d406a9c98c3 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/neo4j@sha256:54a9e2e222ccb3a4f74419ba9d3e63814ebf4e63be05f64326cd30040165b053 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/neo4j@sha256:b50d6ba633d5935a33b47186c468d91819b3de0316ac835d2f7a375be6ed7a61 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/neo4j@sha256:bb31e2b31a85639def86576d24827d3d6e5a2afecb99ccc5e5f9f71a8b30efa0 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/neo4j@sha256:0b3e66d2034f92b1d28f49e19a3b699cce486e1d466606b171ff0243a0194976 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/neo4j@sha256:ebb8c62c1be0b18668371916f97f91d40d9c173a2f0b22afd0c816352900668d |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/neo4j@sha256:4dcba689a755a5f1dee623d04558200466e677adb7f93e0e62fc1424c132dc8d |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/neo4j@sha256:4478a9151d5163789a8d40e1385ceea3553823ce451d2bc86c47da09b6322984 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/neo4j@sha256:76db07101263eb9bc3ce5f12465592d3d4f3e7bd40788cb9ee2a49098ff58136 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/neo4j@sha256:3f05650ff58321730798be88ba42da677e2a842de679d50a1683bd1209e82f68 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/neo4j@sha256:a6a6f43455b47af17cadc079ff0661c20988c717a1c95845155fbdb267675ba7 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/neo4j@sha256:c09ac1d9bb82ec6fc20917158409ca1a89359d37c97f43d6772b81d1594d7848 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/neo4j@sha256:0acc2ebac573d7410b062e87d6269f4f21b9ed76977c80946d7cc63e8e54094c |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/neo4j@sha256:95ed7296d74ca01d383105686c02d9c19930807d82ffe3b27c991581a80b9e61 |