Sign inSign up
Ruby

dhi.io/ruby

Ruby 3.4.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.4-debian-dev, 3.4-debian13-dev, 3.4-dev, 3.4.10-debian-dev, 3.4.10-debian13-dev, 3.4.10-dev

Index digest:

sha256:a8e6c204ac1a3872e2893a66c06f3bd92e7005da2a311067f077d84383f93ec5

Manifest digest:

sha256:eba2bbb125cc63c4bcde734982128f18e793d4bc99cebff70fba0dfd19740e24

Size

134.28 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
4
0

Support

Active until Mar 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/ruby:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/ruby:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/ruby@sha256:1540a50f138290c948512d4ee2d90f80c8b0ff8cadc298c94f629d6bc4996ad2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/ruby@sha256:fb500c861923030a748a6344b7a57a5f530dc3885332776912b939a482a1849a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/ruby@sha256:c83ac80afd053fb54389d51e247631e6ccb28a807a467f4061d8482b2deef751
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/ruby@sha256:81e2063a944a97fe38223bda67096bac4007f663fdce0559d0755aa077aa21b8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/ruby@sha256:d29b45f1579871faf4c3c5a5b385333a1de518afd499f004767d9ad73a5b15e6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/ruby@sha256:af095c2d26a091c30ed53f3d2fea9d8a8d859308e3fc3246bb4879f5ffd8d90f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/ruby@sha256:6c92cdca7942ffe0edac093cc7ab79cd6467e26a769ea59c3623126dae7b45ba
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/ruby@sha256:fb8ca14fcfe0db4d1f81ed5a2666b22513440b688570133c809f8c89bd9e38a1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/ruby@sha256:18c7b78ade29508ac4b1bcff8b895f21c6fbab156489235aa71be1af206a067e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/ruby@sha256:80de4a4ce28ef7af61452012dc4ea0a6cd2d31ea11d3d737cef6ec8b3be72d5a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/ruby@sha256:b4198844917d48341e613127d324ce99af7692a2841888373cc0f273fc2edb67
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/ruby@sha256:06e7fd5b47158470e7e9ceb3068899e7363539a36218e186b89a6a383b5c28fe
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/ruby@sha256:157b5d09070146362be788b1866e842063e36c6e28f4bab90fcc95cb7bce6352
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/ruby@sha256:8c8366b2ef61b95d135444126e90f441d430bc5b85bef33873f6df64a4c38d5d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/ruby@sha256:7755bfb7b824c83ee5d997f8d7232ea777ffbfe3d4bf8463649f874119762ecb