Sign inSign up
Rundeck

dhi.io/rundeck

Rundeck 6.x

CIS
linux/amd64
alpine 3.24
Tags:

6-alpine, 6-alpine3.24, 6.1-alpine, 6.1-alpine3.24, 6.1.0-alpine, 6.1.0-alpine3.24

Index digest:

sha256:65f69d40a455f6449e6107082f8898dc36073c32742b104538738888b66c8037

Manifest digest:

sha256:51cdc4a2e0c8d7fb3867bcbe25c4b4b3edad095df72b08eb293fd8dd6e4690ac

Size

283.41 MB

Last pushed

28 days ago

Vulnerabilities

2
15
3
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rundeck:6-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rundeck:6-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rundeck@sha256:09fb8c55dcf6e50f3dc1a101dae3476277dfa951b4238720edf213f73f579b6c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rundeck@sha256:6d18c69e0c9139ee4f461af1e83daac40f7b795ab5a02051cbfb86f56b378214
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rundeck@sha256:5fad8208b242dc1bc6867f79ef8fa32c258b0fa21afce36b72180a16198628c1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rundeck@sha256:7540695c559c0e71a8505b50ea325808a6d5f7360ae79b02b5185bad68d999a3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rundeck@sha256:c418612fd0dd707a494b43c21683903534ae7bd831a771cd768b7d2c8daea71f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rundeck@sha256:ede3e6c486174c8d057366d12d0ce961f7834a504062cab81f6931f3f77c0e1e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rundeck@sha256:458231715545d5f1801207d5a31e9f7dbfd3b12a615977cc2e0c0337ec1c3ef0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rundeck@sha256:66b21352fe54a156b1abdb5b5d2ccf824cb896de2a8b4cd0551b36bdd0c834b7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rundeck@sha256:b14bae274c61c45287b2efd322e77f38252f3539f231a8e8ae2b5980819c6469
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rundeck@sha256:85071e9fc58b6739e5ea0855f0806886cb87a6b89c885c9f4064150172577ad9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rundeck@sha256:ce9a7797a117997df62b5276ee5dca0cf6fe1caa4c532acf911f693b20b84d23
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rundeck@sha256:d07c6ce4a38201436e37fd1920f5bfeffaf6b23cccfb1dc46ee411076b32898e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rundeck@sha256:eb2155bebb05e1c822c8369aeada26cfa3779d6ef9914f579b5a088fce799374
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rundeck@sha256:0507d2a07fba64380fcc0afae7dd03db7241f66fa0f461a00dc51383dab2fff0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rundeck@sha256:9071f12295ba72946840386a54b1d3be3e95278cff8e70d066e31f481cdaa2fd