Sign inSign up
wait-for-it

dhi.io/wait-for-it

wait-for-it (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.20200822-debian-dev, 0.20200822-debian13-dev, 0.20200822-dev

Index digest:

sha256:11087cb5dfe85794cddc94369d70aa4342be805f9c67484406c314a3e67acd8c

Manifest digest:

sha256:35008d4f10071c6907f52f2426dd7d63d5804854f3ca943d8afdbea8bdf8b1d5

Size

23.77 MB

Last pushed

9 hours ago

Vulnerabilities

0
1
0
13
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/wait-for-it:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/wait-for-it:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/wait-for-it@sha256:3ea023b361fe3e07d4230b9db72dd2c8da5f2af7c021bfd69689a90080338d5c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/wait-for-it@sha256:2a79766b2ea88a856d746409d68f410cbb34d1db4a7ae31c55fa5df0cd209ecb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/wait-for-it@sha256:08ed3f7dbb3b78cb33cee39a52b9a74e7f62bf8e245175a61ff15da6cee7012a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/wait-for-it@sha256:960b4571ff2c2d1ddf42e02b9db8284107caf96c2250b85da87158368835baab
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/wait-for-it@sha256:114a31cdf4428f08dabfc29aaf38abdfd83651553d46140e303e89dc236286d3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/wait-for-it@sha256:81515b66444ce866d99f31cc163c0d352d78ed4d54b68eb7cc61f1ce97ca5962
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/wait-for-it@sha256:568ff6385556cd10f2deeb4c1a8a5c7655fb1e656f62276acfe7fd40521f5ce9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/wait-for-it@sha256:f1d5386c93f849f9bfa572a11883ca9b0ab6df23839b0a7731eff5e77a839f42
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/wait-for-it@sha256:562a844ed56ee56046a97ec38b1dc97af99fc49721e260a961a2c2f42fdcf7d0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/wait-for-it@sha256:59314865eeb68b94aebfcc3de25e0946fcfadd56d8ca5154384676df1fb4431c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/wait-for-it@sha256:31716d96f72fd740afb58fd036a36aa88cec3f81d5f9ed3318cc2837a48e93dd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/wait-for-it@sha256:64f601f4e18974226aed84a9f56697eea03117db0afb32e3d20e4b678d55fa8d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/wait-for-it@sha256:1a85ebd5916b2c41b7ccaf9b1b99b87b772b3e6aa61103dc91f0c020082d1cf9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/wait-for-it@sha256:d70a1b51ad721b3a3f372d4e5d17c05a8f1f2c63b71701d0238477e3aa177afc
SPDX SBOMhttps://spdx.dev/Documentdhi.io/wait-for-it@sha256:c1805423d4490473ef4ea4dbeeb55725ef3307e86b2f55b487a91cc28517a7db