Sign inSign up
Centrifugo

dhi.io/centrifugo

Centrifugo 6.x (dev)

CIS
linux/amd64
debian 13
Tags:

6-debian-dev, 6-debian13-dev, 6-dev, 6.9-debian-dev, 6.9-debian13-dev, 6.9-dev, 6.9.7-debian-dev, 6.9.7-debian13-dev, 6.9.7-dev

Index digest:

sha256:ec99fc24a9739079a08c9f85c3e96fb4af18db45ee94fa54430fced9a00a8053

Manifest digest:

sha256:07ab7814b2c692f26359e284b4f0fe9568f328f9d8b60e752be1010a01ef18fb

Size

60.49 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
1
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/centrifugo:6-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/centrifugo:6-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/centrifugo@sha256:b0e52c0448291a08ad5b0e9a2746d1441aae9ed2a85df317a16d47dedc2401fb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/centrifugo@sha256:f15c9f60fa3d487b66cebc0ed34610cd1d47201e77235db4e6a076563a3d058b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/centrifugo@sha256:f74d8dcbf5c1e559aec070d55a220d625be2636ed5015382d71c8c8abda499ba
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/centrifugo@sha256:dee005c971a6d65b2f059e78a56ff164d894fba00b2f8d5daf2abd6d3fbf42d2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/centrifugo@sha256:e2347795cf71a7382996c93a5efced55d7649741b8be8a1db81fcc4cbd7ad906
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/centrifugo@sha256:81970a92365f747fa46eee97c93f62ad75810dd642aa72c3280a507b68a8a54d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/centrifugo@sha256:5dd0397976cb2d5c7382a5d816989a6ae70f1c3833a52cca21946cbce892fcdf
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/centrifugo@sha256:0e6681e06786052746ace03f474912cd2b3135bfa16774e80d5637149f344b6b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/centrifugo@sha256:4bada61174f5d552fb2a9c74306653309348ecc3d487c93eaa0f8327fa4c9cba
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/centrifugo@sha256:50a8c8dadee6c3d081cef570fe29f16f1ef973b7cbb089da915c630d1d8ba290
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/centrifugo@sha256:faa57d234640a59dd68ead61a20da296ed30f6598732f1d5b6adf4e0e2bf9dbf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/centrifugo@sha256:19d6e18381853503e576f86a77f828f5e7164a7764b617e0ead66b909a2ed14c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/centrifugo@sha256:33c43d99dcc5e9ba60e99e26a5c4c693f8a611930a8f926fc8384286b21a2275
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/centrifugo@sha256:dd2bf59040c5b537e8638cb0ec3e9810b5d43266f956656fd949b41b7c6ed956
SPDX SBOMhttps://spdx.dev/Documentdhi.io/centrifugo@sha256:2020cb047bd1a5ffd7c447dc6e3ad6b15a6151b0102b8b7767ce4f64b654eb67