Sign inSign up
Node Feature Discovery

dhi.io/node-feature-discovery

Node Feature Discovery 0.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.19-debian-dev, 0.19-debian13-dev, 0.19-dev, 0.19.0-debian-dev, 0.19.0-debian13-dev, 0.19.0-dev

Index digest:

sha256:7e9ade18f1e7821e5e49a1d3e886c88afed279d43d67262e5edfa5c940d3b169

Manifest digest:

sha256:c17f34f1f42e697ee3a7576758f19a75e6078cf116003163e20bf32262d89b71

Size

87.85 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/node-feature-discovery:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/node-feature-discovery:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/node-feature-discovery@sha256:450edaeb97572f767ef1fa582c118a6ed90997725a95239ac722f7c4d3ef7593
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/node-feature-discovery@sha256:0cc6211becb7f3999244e52551273936c935622cce05947da827d6c5e22c79d7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/node-feature-discovery@sha256:208c09f33c3680835a5dc4b9d2a239c03c1c4f6424afd35d3843107d166fb268
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/node-feature-discovery@sha256:dc532661cdf23dcbc2024d5eb45139cf2c8982481e20d2acddf64b31a99d80fb
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/node-feature-discovery@sha256:79bd20b7d0dc8423abbd2da129c6331bde44a2ef598deb72080f69a5cfe3764f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/node-feature-discovery@sha256:59f9242bd9db29e15a7bef1a8b573f61a98521445d332c83543177cb087d5aac
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/node-feature-discovery@sha256:b50abccd0da41f0fcede8bd5297793733d2c90287e3bf931d40729f9c4326a57
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/node-feature-discovery@sha256:e64828147fa2ea6a061f3991142316e7b279395ec92959588e35a8f7b09f60bd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/node-feature-discovery@sha256:c78656138c5062e2a551bd8e8753528f1234a3e2bea6a3964a58849bfbc4015a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/node-feature-discovery@sha256:363c34891d3d07ab643022147a0ba7b4fdf16942c85088ef9054a06cd203fe96
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/node-feature-discovery@sha256:42b7cee870fc30b83ee1fe170d9561b64e5c7c7a7a6384860424fd4f263e668b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/node-feature-discovery@sha256:aa8c149848ef23977a0d59ee8affdcc90727251a465b3545316141941c9d2f96
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/node-feature-discovery@sha256:8a451a28ec2f4feeb4ada276ff0ec3b30aefc10ff30cfe1c885c0f5a0ea8d4c2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/node-feature-discovery@sha256:8cd6010905c98f16b28f0122954f1dded13548fab4db05785e5a9668a12b7d3b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/node-feature-discovery@sha256:006200fa635073f5d61be23d981ef3553ded3579b9b4dd2db4a995b64460d569