Sign inSign up
Ruby

dhi.io/ruby

Ruby 3.3.x

CIS
linux/amd64
debian 13
Tags:

3.3, 3.3-debian, 3.3-debian13, 3.3.12, 3.3.12-debian, 3.3.12-debian13

Index digest:

sha256:9ad2f167a5a171f11a0270fbd9cd9a60a744210782421a81a77da145c398a3e3

Manifest digest:

sha256:afb952752d1bd08424462f65d0df124cecb2a80bf6754bf661b61ee82623ffa4

Size

18.90 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Mar 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ruby:3.3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ruby:3.3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ruby@sha256:47e893f6a9a86d183ca2c54de081fa57bab445021c8999936000779f49d1b4e8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ruby@sha256:88d6caa6c61f54712c1a6714b42b746c24904959d6078d494dc932218c477aa4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ruby@sha256:0f510a480fd5027ca4a5c6c7b18c62d1e94b8231bcbe21c152e7ddcc970b3688
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ruby@sha256:9cd299a2438f0aed557248171013e603c23ecd05ba09719eb2357347d530cff5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ruby@sha256:e58aae99efc8f3e72f03eda680d013ad0a11e3358230583c4e5ae4fb7ba11868
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ruby@sha256:459077a9a396177efeed5f9c14abf29782623c047b9b7438cf6ade73b07a2144
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ruby@sha256:6d2ca9201f7aa584e00c046fda6c2583fbee6e7523353a5ffcdd8e74abcba54b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ruby@sha256:d05d3ffdd8834168beea1546d1512bb8a9138ef9ca795837f9a4316ee66c604b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ruby@sha256:17296036a7a09dc92147ff4b8c0a9a6998d16e10ee91230a55f5572abf1bc67f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ruby@sha256:8c67872cdc5ce2df3da19da434ab529b2148c946a87bacf72ec14b06485301c8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ruby@sha256:7de1df3b34340357093f82ccb3c2b50f12fe99062bd577a6227136cd10c845ff
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ruby@sha256:ab0ed1db5639a273cb9ff32099b881143a974567589995fe7d4b0cd853542695
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ruby@sha256:22501c28e5fba9a9354ead4721ec05f3791f9ce41baabefe3e6ac0ea0fcfb6d6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ruby@sha256:605a120c931a9d19c8a4c2f350c1d9179b7ae4f5b97775b40592093d9c6a1ab1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ruby@sha256:4d7124dc9b4c2305e2e11660d5306233e3d3dd992de134b8b9451e9ddbfbb9d4