Sign inSign up
regctl

dhi.io/regctl

regctl 0.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.11-debian-dev, 0.11-debian13-dev, 0.11-dev, 0.11.6-debian-dev, 0.11.6-debian13-dev, 0.11.6-dev

Index digest:

sha256:22e03cf0678d2a853f16bcfb5bf4af78f6097e0d8dce77b7c517297549bcfa5a

Manifest digest:

sha256:020934f0047ab12275cee58a962c4c29d00a3f7a6c314ca9da4e657cb01a2604

Size

31.59 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/regctl:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/regctl:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/regctl@sha256:8f481a1064cce14bf2e4b1dfdf700c6df34f787eeb77739e74ed83a917e64c68
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/regctl@sha256:d850938655e0664ebd70da3fd47c839be99a4b0d2a1c2059321998458a2de6bb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/regctl@sha256:7aca3435fa68fe2d0ccfb9682db8e260884a8c1160a8f3cc12e1099d3cad7658
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/regctl@sha256:9283564b986b7fab956ee8d74a81d234a9abf394322bd6b2d429b6fa71a1ff27
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/regctl@sha256:0853ada280ccb3899da348926d26d4a68aa39f3fb20a77cf96b38844c7a220c3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/regctl@sha256:f7580635dbc741b8b4bd9762c130ef8ed38a8f9dd7b41502afaaa8b3ad64537f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/regctl@sha256:0170fc20b9f0d3557375b773b2fff2d613a7a68a30e44461f98154b512d72cd2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/regctl@sha256:e05efdc7f5af83726a091dff6eab49e2f8fcd2cc8bbd5e0accd97000f6262938
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/regctl@sha256:d2c6c061e8145a58b34093e38264223d14d250bde8681a4fe53dc82639e215c8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/regctl@sha256:9e7fc5940c10e2e83e7c8a6ea50afc823b4d547ba1c89ddc8af5a25808a09399
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/regctl@sha256:2a4fefceab61d094a49b7218023d54aa465f934d37c3b135eebfb26168f38bd6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/regctl@sha256:820aac2972813c9a119d417769af0ad83356d702750dd70b7e2dcdc59322bb37
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/regctl@sha256:badaef14b613a22a6b46841b7bfdfcadfcbb51166224dc2bbc1f40577fa55042
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/regctl@sha256:14c23b9f37d9ed55093936566bcb8932a6ca5335e44aff6eadc4ba3c631fb720
SPDX SBOMhttps://spdx.dev/Documentdhi.io/regctl@sha256:e23af6142e733a5c2bebf9cdfb695eb9f85013d126eb28569f8d71a54a10558b