Sign inSign up
Delve

dhi.io/delve

Delve 1.27.x (dev)

CIS
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-dev, 1.27-alpine3.23-dev, 1.27.2-alpine3.23-dev

Index digest:

sha256:eebe07cd3b36198e3fe8f26870f79cdcb341c4a6b3ed7f0e8d1d055da71a96a0

Manifest digest:

sha256:044e0f78e62fd4cf75e3de29194633510c91a6b29fc9d02e6e70789119d0d5f2

Size

14.71 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/delve:1-alpine3.23-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/delve:1-alpine3.23-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/delve@sha256:92181f270b48e384cb79e2ee99855ddfec74b51a9098eefd746b0f7497800cdf
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/delve@sha256:5facd11258765cabdb064b35a25a2ab08fd095066cb280416702665697f6522b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/delve@sha256:869af7e645d1e14ece0e59c5ffd0ddd894895a6933871d11d1af9182f316f6a0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/delve@sha256:7870c55a0c6252a65c5364e5f912b13df0421ba1df729cb2d4ac687118a78975
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/delve@sha256:ca4420be17e44bbc2a4fd5062b428de0345ecf12d00704eae8132aace427714d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/delve@sha256:18f0355ec1d110f68aaba2be315c41d3eeaa5c8e6d06829c923f193d4e54f384
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/delve@sha256:3134511d3bff68a119cfbb1cc1def7f3dace11f41f6b1538349dbdbcded98bf8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/delve@sha256:e11015336a05c5d7777d14608de67943255a6e619ae84bf1bfde4d941509bbb8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/delve@sha256:245c59d4e76b41edbe931950438fc13def610276a70ee06991613f32ca3b05f3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/delve@sha256:00d235b397d67b2c4e7851e14e0ae1ef3b07d7b16dbf92212407536b6fd295ad
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/delve@sha256:b8c81d860f18b6ce06f48438d1b4c7f47c2ec76ab9576afc733973c0f682b3e0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/delve@sha256:516ccd852f3f7d341ca78b6ec4b47b30efe8cf37ea3a4f8716fdf94633f2df83
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/delve@sha256:bfa2c940c94a4d6cb85d4a5086a3e75222c9c21630b989380ea46df8e942186c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/delve@sha256:ddfdd3a5820417099691dcb7a5da1fe0abc7c1667b6ade4148c2f8d462a80dd5