dhi.io/registration-operator
1-debian-dev, 1-debian13-dev, 1-dev, 1.3-debian-dev, 1.3-debian13-dev, 1.3-dev, 1.3.1-debian-dev, 1.3.1-debian13-dev, 1.3.1-dev
sha256:c892688dc9af1fe16d39f51820b323d7a1f701573533e4f80a85a330d8672713
Manifest digest:sha256:e4f79512290e8a57e290d0be5f41e5386a69541525a4fa7a1dc98588c69c640f
Size
70.04 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/registration-operator:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/registration-operator:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/registration-operator@sha256:a968b881e36a680bade3a5efc3ca93702722a72ebaae8794f160e14000c89543 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/registration-operator@sha256:c4f2529f2754b78e980760f06c34566be08ae21bda3e0a1187c6f465b7b7c7b4 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/registration-operator@sha256:74d672ac761f8eb9b8e3381a730e175ca1bf451bd80bbf9df5c9bd7ff2e96039 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/registration-operator@sha256:9615b06c22a405a9b74336671a48d854d90675589f564a339d365a79ef6fa0da |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/registration-operator@sha256:442838430f4613cc34f55b444b8499ea1bd145d9fd62b3ab51be682d29321ee8 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/registration-operator@sha256:705f9b606f86c41fa05ffeb32776a577402a625defbeec0741c60b686d188fba |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/registration-operator@sha256:20e507726e7a3acbdbd1d85db87c063ac133582fbbfd7dfd18e49e2c274d785d |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/registration-operator@sha256:c9c7d093f0f7493d56e1c9fd991272df7cb5093db1e2a1d7e2cbe77ae98a341e |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/registration-operator@sha256:5e2ecdea39bc7187a8f36e5ba45304c02221c3282b3eb55ba9d205907e195649 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/registration-operator@sha256:bd4091c85d1b821e0ad109a7ce9d0074043d2e998b8815cd28f6648b3a1cf0c8 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/registration-operator@sha256:4aed354cd293ed72b65b4f101260224b6975a513870f40a67a6e451944be1e3f |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/registration-operator@sha256:98ecb2c2181744de38e0703904f923add3318d58de7fb598637d509d99c8d0f5 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/registration-operator@sha256:dbb555461373e6669093fa98e164c79a1409725220a03cf6fcb3ef1bbe58ce6f |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/registration-operator@sha256:fb79ce044c6b6536ca90eecd01f4a0800acec85066af2e16355c20f8c139019d |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/registration-operator@sha256:32eb69e6328b9168f60c867416e1bb474fad553bb89a8377abe13d879552d70b |