dhi.io/airflow
3-compat-fips, 3-debian-compat-fips, 3-debian13-compat-fips, 3-python3.13-compat-fips, 3-python3.13-debian-compat-fips, 3-python3.13-debian13-compat-fips, 3.3-compat-fips, 3.3-debian-compat-fips, 3.3-debian13-compat-fips, 3.3-python3.13-compat-fips, 3.3-python3.13-debian-compat-fips, 3.3-python3.13-debian13-compat-fips, 3.3.1-compat-fips, 3.3.1-debian-compat-fips, 3.3.1-debian13-compat-fips, 3.3.1-python3.13-compat-fips, 3.3.1-python3.13-debian-compat-fips, 3.3.1-python3.13-debian13-compat-fips
sha256:fd76e6c1e4a74bc4a99a9a5dd16ee977a70942d3fa92407fe1271f192682daa0
Manifest digest:sha256:9f175f270f25560785271537bfac5524193b33c589ded95f7e773f30e94ba167
Size
381.22 MB
Last pushed
2 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/airflow:3-compat-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/airflow:3-compat-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/airflow@sha256:9d14fc72bdbfaa9ee4ca500c2c3aad91a569ab2b12b53cdd33992800fb554ca5 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/airflow@sha256:920443dd3bee3c815325dce541aae8957ff13ca437e87b55544a66e57eab4e8d |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/airflow@sha256:acacbd025464dce50380b2a37beb605ec9595263524b5b98bb135f30ca7efcd9 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/airflow@sha256:c577029ecaeefed8c1eecbe8501920592588e261ee212246f97b97a8832808c4 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/airflow@sha256:1ba6a454a111eefc788ad31af399c144faffa54ca454b506fe704457920594c0 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/airflow@sha256:28d3c96ee0ea3a7ce8b4c0f32c18a810a8e76ea81080bcc8223e8919be4e59d6 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/airflow@sha256:f023ba606e5a66f8b84dc2bfcd1499e6a387bcf7a9e8b29a32e944179ebcef74 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/airflow@sha256:eb09c13261595cb655d09a432ce2ae7ea908dcba45e03c920699a9dccfd7dca9 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/airflow@sha256:387458595f5e3813fdb2608106f97a589d1f439873b8fc7fba29dbb0586b6c13 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/airflow@sha256:b43a305882b84fba4d6d62571bf1ebd4db7335a27ad86707498ee5af4c8e0637 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/airflow@sha256:b010a120dbfd79ce944f605320b8309a7dafabb768e7a07303478b122f5b7587 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/airflow@sha256:2d61d7f9d6c191f87392df2645ec34b1cf545de46eaefefa0389956572ea5017 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/airflow@sha256:1e993dc6640f5ebdd0513891a8b588bfa426cc9314163f36d747a8295e07067c |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/airflow@sha256:7886eb48a5387a20d66fe0e6d37421e7d487fcaf847dfacbbb2392d0697d7be2 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/airflow@sha256:a5bb22517d69d0ecd576c579542917128ab9fc208a0db719f1e04bb942ab5d43 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/airflow@sha256:9740d4f13b6771053ddfa83df376abb42f92d96a9678108b9e7fea7a46fcf2ca |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/airflow@sha256:974939a2b2850f165214babc22f270188d535dbad8bcaf31ecc84e50117c9828 |