dhi.io/centrifugo
6-debian-dev, 6-debian13-dev, 6-dev, 6.9-debian-dev, 6.9-debian13-dev, 6.9-dev, 6.9.7-debian-dev, 6.9.7-debian13-dev, 6.9.7-dev
sha256:39ca6ad3a24a6722d99f9816ab7e4fef258d4f14c3a54856c0c9744f54bf9026
Manifest digest:sha256:98d3b0a6dd78efa90183031b9437bf4fc6f22bddf194cac94bcde527f17e4347
Size
60.49 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/centrifugo:6-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/centrifugo:6-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/centrifugo@sha256:fb77b6598e27bfbd17cc8a3b60822b41f90a42f3b289f3ba054c31e8fbb7c0be |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/centrifugo@sha256:71a296d348fa0672d284316fe2685ce345578215436294d0adb18c8af898e755 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/centrifugo@sha256:e9113759b12cbfaa5d842d3baf016f5bc032828797f72acc99e8a72dc769c8b0 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/centrifugo@sha256:7c8a7e46564df412b36009b3105988113e77a523ddfe626e8186c68aca865c5d |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/centrifugo@sha256:7584a0b6c9bd27e48fa4ac995ac2a02a605bdbf036cac47836ab9ed88657a3ea |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/centrifugo@sha256:32daf984549916ae0cbd1a343cecc9ddf01b7b145aaba314367289a975f9e8d8 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/centrifugo@sha256:f60e79273f540133e280493ab934c90fc4d88d6cc7d586e65ea803cf3b35483a |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/centrifugo@sha256:27be571449adc8af1d05b7851f494809c01af73d3701b13253529250d73edc96 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/centrifugo@sha256:e6abd6eab2c2374b485b3cb2e11330a74214dc951c8f15f5e0259f61137a8c07 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/centrifugo@sha256:929940376cd55824d2f3a43587d2cd557e1427d4e3f49d62d57ee2107c1b6a8e |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/centrifugo@sha256:8e237e05c9279a611a5d33eed2ffc10b4136b62c18d8f2e064028bb689721d84 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/centrifugo@sha256:81be759db56880a480559bf4b2475f6342005f309e67f04c0d82f2ef1a719435 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/centrifugo@sha256:7b266cd54c232c93bc3e533f8b812b4cbb658523853c313c13bdb5f185ea3302 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/centrifugo@sha256:9af9f6e4f25d5fa484fb8eb8b2b5198895f081f1ff8aa5983ec13551ee85133b |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/centrifugo@sha256:2b27e8656ab15c188e0b4c410c7983135b0e4daaed0db252bcba05660e604909 |