Sign inSign up
Rundeck

dhi.io/rundeck

Rundeck 6.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

6-alpine-dev, 6-alpine3.24-dev, 6.1-alpine-dev, 6.1-alpine3.24-dev, 6.1.0-alpine-dev, 6.1.0-alpine3.24-dev

Index digest:

sha256:81ca5c40d3fc067bef7877ca32d04676e421ba1278fe36217c86982779fab8d9

Manifest digest:

sha256:979da867f9b5e9464452f2fb503d40169ae0e0f922c4b9e83fa66beb4e9c92a9

Size

280.14 MB

Last pushed

25 days ago

Vulnerabilities

2
15
3
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rundeck:6-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rundeck:6-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rundeck@sha256:fbc9f3a5c0bd03cd8b3932ab830af775e4a53b76d2619052b4759e15617bd956
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rundeck@sha256:cf03530734d6ac07419b28a91940c56691fb9c00377d6f1a8c872470581150c3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rundeck@sha256:da5a574a279bd9190198cb962edadc7cf002192ee593921e5ffc8bc21b823e08
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rundeck@sha256:ffb3cc368cfd2543f5cd28cc187d030f3d1476976c58bcb6c142131195af9d6b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rundeck@sha256:f0514e8122fbd9f5d964b79239442817ccc887169ab9e1580d01dec74a2b79c1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rundeck@sha256:3b79d2c40aa860475d2e594ed3a924982242e94787c6a7b4e2965a64cb5290ce
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rundeck@sha256:1f63074863629d7e45eadec114bf51740a1df76192ecaf08ed6693ca045c1953
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rundeck@sha256:44b8194c7151b3b9243fb8649a27c12899ec1988f54a3628d28818d07bc88674
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rundeck@sha256:035efaa77cc2841be70e2f7451a8a3a6eeb2e34e482aa49b14078db6046bd3bf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rundeck@sha256:4e8702cd6e1898d781c1eb4c11a703ea41e54fd4df33c9e2d873655d5182543a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rundeck@sha256:699f47e43139974f342fba1f1974b9bff040dab16cc462d8a57a9b91ccf5859e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rundeck@sha256:1119d63350d68b4e71bed85cf67b5d5143caba283bab36ed1bf0d39b216adc68
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rundeck@sha256:f8e2ca0ad3e7f57c9b5a3cc6dbbf567fe7940231ede00d967b6293ded1f3910d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rundeck@sha256:faca5056ac3c3bf918cee869ee89943677ffae1aed9227277013fe983942d718
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rundeck@sha256:fc93b29e2d9cba4533619397f154138534e709bad364f6e4c65c5e1cedbd9a12