dhi.io/oauth2-proxy
7, 7-debian, 7-debian13, 7.15, 7.15-debian, 7.15-debian13, 7.15.4, 7.15.4-debian, 7.15.4-debian13
sha256:44ea1a5d19cd32301d0e51dd46b883f1eff1b19a992c371d63674fd85979a49f
Manifest digest:sha256:ba9bcf4210e4537e11955c4e375095fd1800ea41e094eda790a2d1d1896628df
Size
9.72 MB
Last pushed
9 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/oauth2-proxy:72. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/oauth2-proxy:7 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/oauth2-proxy@sha256:b516340bb40963a31fbd30441dd6da7946cd2f688752378ec4f9330332cc167c |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/oauth2-proxy@sha256:cdd45ae938fdd14f26d4197a6042ab8c88cbaf729b6e5ba90470df9b452ef013 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/oauth2-proxy@sha256:79df2a77b98615e5659e4f988962987869abb6ce96ff3c15f0cd877a7e359622 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/oauth2-proxy@sha256:9cda4bfa8642f5062c8939d7da33787d956919bfe4ea62c355bfa02c0c42f960 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/oauth2-proxy@sha256:8781da4a601ffa226920794b0dc7d97e8b3ac74bbefa33ac0062edb136ade5ec |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/oauth2-proxy@sha256:01218ad3d53a30e647caf5aad694af5026323b863cec846697c0fc64d27539b7 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/oauth2-proxy@sha256:58abb8eb188cd13358775aff0ce8eabbeeaaf82470cbcad5c561cd6197128364 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/oauth2-proxy@sha256:39e4f051126d20ebdc20c2c47f2f3365911eb3a3f87129435d2816f5e47030db |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/oauth2-proxy@sha256:a6775a883c437828ec02f8c8d8b4e55a8f2554b6e544f84defd6d67fdca672b0 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/oauth2-proxy@sha256:5bac310f009c8d8f43accbb34160e8c5fd5dc18dab68db1642a4197ff9e0b409 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/oauth2-proxy@sha256:30485059a9214629aefe7e51354fc6679a04a253e8150f46460d91aabe275fd1 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/oauth2-proxy@sha256:8f6b4e14684ca62a72a2474e70cbf21bb3d1575713c6fb7daa4b1090a65b0d8a |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/oauth2-proxy@sha256:8a0403d2a170e263abda54cf21d4876975664778e7c6c088f6dbd7d342ca8342 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/oauth2-proxy@sha256:7062684442d97e58333000ec19d79636474ce9be5ba0700083dc7ac45f493b5d |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/oauth2-proxy@sha256:8c1aa67975b2412b17e615678f35cb9028127bfcd6e25c1ebacb39f09b67bee7 |