dhi.io/awscli
2, 2-debian, 2-debian13, 2.37, 2.37-debian, 2.37-debian13, 2.37.10, 2.37.10-debian, 2.37.10-debian13
sha256:231ebdbfa794d2f051716d90d1befa3c8f9725fca6bbbbdb4d402a825e853c7f
Manifest digest:sha256:40efcfb847a931002e6313d3e5ccef44bf16fcd9fb5ebc5e88d195ea3f5a0d12
Size
65.16 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/awscli:22. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/awscli:2 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/awscli@sha256:3fe52421c02b7cbcfec08b4ead72183bb235fad50608d9ebe598ecd2f832d687 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/awscli@sha256:3dd8eebd44b43fab0ca1bf9c98ca19a2ef9d2e9ea53d79909c030a1175a7fcc7 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/awscli@sha256:d08913d71421c8f80bcada80d82374de5f59fc4c91f49622d0909bcdbdfc03e9 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/awscli@sha256:53fb315ba8f1abb70b40816142c59b69ee0c7e9e8d84f37abfc634aad3aa99e5 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/awscli@sha256:6f4092d0cfc093eb7980e7c398c0765c0d9ff1bf9a191b1e0d7e21101bed0962 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/awscli@sha256:48678ab4e4c7bd7d9cc0b5f00aa12d73963bce9b7b2b27b6577d251b1ccbfd3c |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/awscli@sha256:490504cd3fdbce8cfba981d0f46797ad4355f77fe3ef71da648fada25d5eb449 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/awscli@sha256:cb0a0ba93f739360ca2db14316fa48028106f640c0284993922f548fecbce02f |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/awscli@sha256:e581f76a5571cb73d97b66a98fc46bdae538ea90a45c400c519a415a271f4893 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/awscli@sha256:5f59cdc38d1112c3b2ede1a0be9bd90cc0e7f04610a6a55cab358546bda0bf27 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/awscli@sha256:3a443899e5dc7940ec96d98e969e60a5e6cd6131dbaa08a730afa90a60002d5a |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/awscli@sha256:f2f278cccd98973aaa84cfedbcf8da9452396cb10a851bff9869f6877688a81c |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/awscli@sha256:55e41eb06d67e9ee7365efb1305a23d6bc00f74f86bb1f9d6ba6a59d179e49b8 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/awscli@sha256:776919c82a408d1752f93a1f6fd26669073371d0c5916aa591e057b2e5a5c7f4 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/awscli@sha256:d617215c91dfe258ea1ce39a5a741406480acc3ce871eba580cdc62f12131914 |