dhi.io/datahub-mce-consumer
1, 1-debian, 1-debian13, 1.7, 1.7-debian, 1.7-debian13, 1.7.0, 1.7.0-debian, 1.7.0-debian13, 1.7.0.1, 1.7.0.1-debian, 1.7.0.1-debian13
sha256:7883eb7dce5eb3d1df180043ce09ba7af2550e0fceb9a7618b5ecafa5fdca2f1
Manifest digest:sha256:38204e118d8b8d1b2d761c799b29684d5561a9cdd4d984c7b791136d2ece631d
Size
582.44 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/datahub-mce-consumer:12. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/datahub-mce-consumer:1 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/datahub-mce-consumer@sha256:6907b5b9b138d2df6a2b85771efc68fb38f046b389085a9c2e7864bacc888ce7 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/datahub-mce-consumer@sha256:1808d5547756fdae5a200fce8aad4c270bfcee03388e2a24e494fa3d684368f2 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/datahub-mce-consumer@sha256:e450092eb6f6c3e6c50c4afd5355939b1d1fc39ec0f51b963e5e71e480ff1cc3 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/datahub-mce-consumer@sha256:95b17d0186980f149a01eb4b7c5d9b99c53c36495b55f345778b3731070e14f2 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/datahub-mce-consumer@sha256:8b9e50c3e8a17c6e7d197c502cae5daac3e5414e6bc8d464d7afd9e194f808f1 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/datahub-mce-consumer@sha256:1e735b9339b5a8f90ba52387b98b5bac9f692315a1712da2243feda79d6f14a5 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/datahub-mce-consumer@sha256:25d4fb3191556aee6fac30d0f396350ec3d9fd2999e76ac6a892ddd9bd2cbca6 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/datahub-mce-consumer@sha256:72e4178f7eeb4e73a93ed6bacb756f419d4236ad3c00ba4d7a5019d1823811ab |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/datahub-mce-consumer@sha256:ebdfeedfcd624ac9ffdbdfd915e830dabe0df5c476d8da7e39e8d96739cdb002 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/datahub-mce-consumer@sha256:acfe34717d76dadb875c930e043fbeb64ce4edfc3b8752bd17a92db07eda6786 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/datahub-mce-consumer@sha256:121416b4c00ce21dddfda36b52af60a52f99593de7cce0454c6697716a7dab8b |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/datahub-mce-consumer@sha256:945f534a1dbd7c6d7f03d093ad0d38baeaab5edd6db74c25f7a40957d8f8cab7 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/datahub-mce-consumer@sha256:137dd8870ff568971468cbdbf1d9c319f4e8a1ee650c0cfc4dc77cdd8d8df39c |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/datahub-mce-consumer@sha256:5f73223ddca5655a2bfb5a1d2d17ac8ae017de05d1edae6bb6d310213a55c552 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/datahub-mce-consumer@sha256:b83b152acf8bff341d1e2220d1c6db8f2acb6e0dfaec1ba44465bca533c9d7b3 |