dhi.io/datahub-mce-consumer
1, 1-debian, 1-debian13, 1.7, 1.7-debian, 1.7-debian13, 1.7.0, 1.7.0-debian, 1.7.0-debian13, 1.7.0.1, 1.7.0.1-debian, 1.7.0.1-debian13
sha256:69e722ac213e36f3c526949f0500464d4ea9488874dd7b21a9624ddbc554522b
Manifest digest:sha256:47d9ed0a8a6a575620bf56c98443c04c472541be82ed1a19b38a07cf786490a3
Size
582.48 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/datahub-mce-consumer:12. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/datahub-mce-consumer:1 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/datahub-mce-consumer@sha256:ba6c84e99ffe2a1cf12173d463c519ac9ee33f9a17abf0ad42eab8821a52e6a7 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/datahub-mce-consumer@sha256:a6c380fc7c8776d161b4f9418fc2837a6a0d03117f4364268534f198fdea4c42 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/datahub-mce-consumer@sha256:98a46569d22576826e4e7579ef2aaa305bdd818db9f218a5cbd8ab4e8e8ca302 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/datahub-mce-consumer@sha256:e770778ecf1469ee2d3809785deee76c1a811baa344bc536fe17066fa62dc695 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/datahub-mce-consumer@sha256:9b9a142151752d46b335473d3e901e08124784cef50999c09318a3d74a918ca8 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/datahub-mce-consumer@sha256:cdebef9c313a62f2b6d707bf3f0ce85a6a27739dcfa548b3a836819e7e53c5be |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/datahub-mce-consumer@sha256:63d04f1208829ad4b14f59c53843108e5c569a9b0fca28d7e97738a68080b55b |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/datahub-mce-consumer@sha256:94a1a3197ebc78dedd6bc7a67f6bf93f1510dc8233a4a3297da6f9b833978167 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/datahub-mce-consumer@sha256:ca8bf6f89f9edc98ef5a75b4543afc1d82273feb0ee2ec83f4aa54303acfdc3e |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/datahub-mce-consumer@sha256:041dcf19db98843eef72bf266c3cc1f524f25c89bb1bb9d6e71526fb1a235be8 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/datahub-mce-consumer@sha256:511783cfb46a86acf34ff766569adf6ce02b3152121e71753f886274c2d02bbc |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/datahub-mce-consumer@sha256:f62959f196e551d18042fb5018c35fc14097cfda3bf87e4d62e3c3e49d7c0230 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/datahub-mce-consumer@sha256:ddc9f31484e282b11c054c1053d0e3b17538d98fa8eb3b6a95c602915f916bf9 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/datahub-mce-consumer@sha256:9aaa317d269eaa55c4e6aee375348678857d55d03a444aeacbbda3bfc21aca0b |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/datahub-mce-consumer@sha256:a96ff08bb8c687c8dedb104ded6ee3b718845fb49b05b73fcd2c20b40b0d4841 |