dhi.io/velero-plugin-for-microsoft-azure
1-debian-dev, 1-debian13-dev, 1-dev, 1.14-debian-dev, 1.14-debian13-dev, 1.14-dev, 1.14.3-debian-dev, 1.14.3-debian13-dev, 1.14.3-dev
sha256:3838409b9583fd16b3e6f855f0464c61e39055f3d7ef928013288fb47e8fd395
Manifest digest:sha256:4c34ac386da115ee8f0e3ed0ee94ff4612d87981a642922652f55943546ad885
Size
49.81 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/velero-plugin-for-microsoft-azure:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/velero-plugin-for-microsoft-azure:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/velero-plugin-for-microsoft-azure@sha256:11e187e6d30da5d07da9196948c660c74c7ace45bbd78c23d1ece5e8fcd6b07e |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:50be0777a4c7574486655a3f6a75d7fc42dc42a6418a71168db762a89a67f0b3 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:8a67d1b6a188a34112c5e70862323db6ef631ae069cbc296e8d20301077657b6 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/velero-plugin-for-microsoft-azure@sha256:d6d2322bc4a176f217b31a4a4cfbdbf32be9013140f6c5bd2cfcc994badd8fb5 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/velero-plugin-for-microsoft-azure@sha256:77b6a1e623797c4a1a9b8e328cdafcf4e80940f0549416f0904e552c7ba5cf0d |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:8c7e6a0b66c52dd4f43f37d3b8c74fddd0e9685d2282deed068acf2156dab8a2 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:c5b1079f982afbb8a4da89f55b905d20bec0dcc6c71ad60c40d478d19ff312a4 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:37f4d6168ed28484386824ff6b24c6a007f60c408cd4718a23fae882cd4fb83b |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:cde9b8ca9a8bb7bfba493e95286e4adec1eee4787b19e72425a97057ac5ce3c6 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:bf96c1e503d274ce35fcd0a52167a2a73ce1969450c741e5ef5050f768adac4b |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:5111fdbe1d05ea0e5ebecf60ffcb4b127a47582615d8b67be332b30bc4df3cac |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/velero-plugin-for-microsoft-azure@sha256:f5baaa52416e9ad5f252dd7a37a1b002dc57fb3cb04458c70f653bfb6a2c5344 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:f31352842934529a5ec7e286e61012913cbc4af409ddc3a7c38ce9d59f654b75 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:62d38234f39fc842ebe464edc32baea64fd4697e69fef169e07720a16a40e64d |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/velero-plugin-for-microsoft-azure@sha256:ac2802e3f520b638246d8ebb504b1c9a72c70fb9434f097eb36c3e72af62424d |