Sign inSign up
Delve

dhi.io/delve

Delve 1.27.x (dev)

CIS
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-dev, 1.27-alpine3.23-dev, 1.27.2-alpine3.23-dev

Index digest:

sha256:68cf7633733c4a482070da99019c6b20607e5237fe13e69aeea8181857d87944

Manifest digest:

sha256:ab27ab55385643cdbe6ad949145e13371726b6c58bdacdfb466c367949a97335

Size

14.71 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/delve:1-alpine3.23-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/delve:1-alpine3.23-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/delve@sha256:f56ce77599d29eace516357947c39e826d1c091b38758e2e9d393708ede69cc7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/delve@sha256:872eb1764751b4a8126c9f3ac0444975174f080e8d4ab3507ee250c0700105e3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/delve@sha256:92d7dd05ee8b92abb754424fa8d125ab6f679688edc44b548cda0ac7ee7a31af
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/delve@sha256:f477d37da3a6e359399774bc7bbbeb9f95475be12b76445524c27d3b30af2a04
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/delve@sha256:b5df9feccdfc74c6667d3d37c94b5939580a8e61a5cabad73cb507f15455ef83
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/delve@sha256:bde6408d003895d7ebe7d964c35fd564ef2651341ea21edd4efb371680038d50
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/delve@sha256:6e8496b41f66756abb0efda36518badbf5ddd4f2f7f2ff34fe49df9670ba6ac6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/delve@sha256:58ddb04049f4b63707e76a083cbad1b287e379b87a8fe1546cce241d592510b6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/delve@sha256:093d24a25482d6e14562baea49ec65cf4c097e5560262251702aeae62704cea6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/delve@sha256:1b00a681163f81e748ef03a1625c381f2f7552dcbebcd40d1153771fce93ced2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/delve@sha256:f252fae263c8448a6a399a1ecd571f9abac13a73a4a2c72d0ddee82a44988f30
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/delve@sha256:1ed064c1fbfdf5293e0bf33155fdd78446dd0fe1b542bbd3241717fa80ab963c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/delve@sha256:a6e711b57c4ce1d6de7df3022b6a269d2dcd64b0e6d6cbf5bf05e14c41d2e542
SPDX SBOMhttps://spdx.dev/Documentdhi.io/delve@sha256:b175c4b3a1c8f1d2c5e658bb835d14a8eb0cdfac20fe94502ec8cb48f9b8b91b