Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.30.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.30-debian-dev, 1.30-debian13-dev, 1.30-dev, 1.30.6-debian-dev, 1.30.6-debian13-dev, 1.30.6-dev

Index digest:

sha256:38293fa56f534c3f974c9069a967dc1bc57b110593429228840fa92756648965

Manifest digest:

sha256:ebc7dd8e26cc9e77efa81d0ad345cb77b30ed95dad774d63da20a0a4397e9810

Size

71.78 MB

Last pushed

10 hours ago

Vulnerabilities

0
1
0
13
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.30-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.30-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:6d27a0419c5e6befabc45e55815237b534a65ba75aedb06620ab5ad2ea916956
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:59d9001049045f3d755bfbb434d670aee229a31d9bb2d0579ad4a295edf6aea1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:336704f8539e5226f4009971226c4af3183d0ac1f595ddfc7d947dea3f67f7e5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:16397e9b7dcf59505f9fe588a36b15939e069dd8a2a7faed6d4a782ac215a387
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:3d41d278bbe41815a226a41dda2558c9859b0ec533893f91daaadde0973bafb3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:97dac0213a9c56eef0c776d4385ff787fe0f5320a7dacecc2ca8e3a32b3c345e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:16978fab014957c7ba396e5152e0e6c7420bb92a8db9b1fc14641ebdc3ae0b65
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:2956b46b49d5fdaeece9dfb6a9ec9289aa5d2c845f5044c49d523358c8954d49
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:afa85e5e879a6ed9bf4a013bee1f18f84dbc2c8a6544fae0b6dbd81078a83921
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:5ff4920b09c6ea8d55c2f3a8d766f22ff9cd7c870d8d1a2d4c824c5578ae4708
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:8b360cd04e27f331e6325d52f879f7eedfc6e5cf97515a3bcde387760c63f31d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:a17dccca5b13354367e3a9d2fee61b0b34d65d0580e976d2bd6c52dd90ab0a97
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:64b24653ec2ed6900e040c367bc0d3d5f968b16d3b7354f8dabc4c5b3cea1e9e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:d1f18923a12ba2a59567bed13c55d3bb3e84506118c81bf88c6b359fdf0efea5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:693463eb928c8cd81e87dc983601d9a40d81df30cdf2149440d746bc45f75ccc