dhi.io/cloud-sdk
587-debian-emulators-dev, 587-debian13-emulators-dev, 587-emulators-dev, 587.0-debian-emulators-dev, 587.0-debian13-emulators-dev, 587.0-emulators-dev, 587.0.0-debian-emulators-dev, 587.0.0-debian13-emulators-dev, 587.0.0-emulators-dev
sha256:1c7e38c0649708893313d070f0643855014157ac670d3eb8222e2545437c6707
Manifest digest:sha256:6c5802cc45ce06cbe99b3fc8b8abced1b806105a0951d102345806e83ffdfb8f
Size
327.62 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/cloud-sdk:587-debian-emulators-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/cloud-sdk:587-debian-emulators-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/cloud-sdk@sha256:35932bc462a7776949d2bf8fe0d794e8ededc50b3a237ab5c14d7bdb30f611ca |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/cloud-sdk@sha256:3da38514da05906f867432dedd79602f6051604f8ea5bbb3c85804060e67f42b |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/cloud-sdk@sha256:ea533655f3d8f010f907b33a26da808674d9ff77351dd17bf96cd4808a5982c8 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/cloud-sdk@sha256:b8947e20d966e788437563f18aebf1f701a5941d3236da23500b57c4fc083d01 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/cloud-sdk@sha256:d21be77b9200cdb5d0ec5b000f9a6010ebc4d1a1cb5e40a48d80fda703a32ec6 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/cloud-sdk@sha256:933728d110b323ca9d3fa0bccbfaa2103dd62787f01c145858ff15ac53f0b06c |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/cloud-sdk@sha256:0145d6b8349078dbcb6693eac5c1f0098fd740edf9ad1d9322f8f1965dca8a75 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/cloud-sdk@sha256:e032fcb65e9788a3cc6c0c8ad28e43387591d77a539769e951534fe40554c8ee |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/cloud-sdk@sha256:ef49bf4ee02be90824f3dae09b4e7bdf98bdc31c71d46ea5f03488aa05642954 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/cloud-sdk@sha256:8ea0c720c8523189353f79b8769aa2b7a5a4d35f99cd0ac229760d58dd2d503a |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/cloud-sdk@sha256:1b31518ac1b0e5f46856d4eec28337cdeae128956e025bf3a96ed866b9ce9e4d |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/cloud-sdk@sha256:7f16cf3583018625d32ac06410341c86f3dcc64bb89a5be54552d999d66f806b |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/cloud-sdk@sha256:89467d406473b3b9e83a0fa6ba18d0ca629f9290a9984c4cf10454ca2c68ae7b |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/cloud-sdk@sha256:e296e5b8204f59a5000ece9a08b9f6a7c9e66d5b848f30fdf2bc9a366bc700f1 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/cloud-sdk@sha256:9426c1e4a739ee45293b9e3a78e1326c37780b04682db2cfdca8dc3debeb8120 |