Sign inSign up
Delve

dhi.io/delve

Delve 1.27.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-fips-dev, 1.27-alpine3.23-fips-dev, 1.27.2-alpine3.23-fips-dev

Index digest:

sha256:47993cc1991f7a27ec0379cfa629ac7660c22665001a0e9615f82dda6dd0fc95

Manifest digest:

sha256:8e2d8ac3b84912257018883c480e5b945aae4a2e578dfced1a8b4af02e41455d

Size

15.56 MB

Last pushed

59 minutes ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/delve:1-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/delve:1-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/delve@sha256:4d796c8e814a973035cf794c555e659fcafb5749275867a560a2d3e688cd255b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/delve@sha256:df0d373dac1361ad6e21971d154a6ad23335fa8932a9802a03bc5f5b564d32c3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/delve@sha256:d6b85ea16a94f89868664add34d4e78a486a45e14d4c5f088b1173910e433ccd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/delve@sha256:1dfac8a0536cab177b66a1efc910bc8e9ee81136e8ae3d34dea543f6d2bf038d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/delve@sha256:698494abb7ab1f8ff669f92985de323d843d5b726689b282ba3612f6df9aaf3d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/delve@sha256:3be8fef9538ede8d61b69e921de3055d72bf5897eb65e466e46418952493171a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/delve@sha256:be8d678d1266a39346c2861405f8de887ce7b72a85ce80d6295ffea535ce2de8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/delve@sha256:6a13451426a598615079ecb5752c6bfdb0ab7cbdffbdbce12a48ffb4bf6185b9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/delve@sha256:ff7ef3f30fcc9f635b68fb2ae25119b39c8a6c6b9376398e073f23f9f6a4c733
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/delve@sha256:c9679a481ec05e133816adb1259131c99a4aeea2a6f1a6b5a89604b8ca0dfe1f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/delve@sha256:e1c971880b299f8fc78cf5807badb0c708d62d68fc96e1e03e57796a5dce44d4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/delve@sha256:58362a27f0364d9a7a5515eb5374ada2ef4dac07410a52fc76b4d048d3540f9d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/delve@sha256:e5f187ab7c7e9b888235d9f94d768802df74a279ca728652fbb6987808b4b815
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/delve@sha256:7f09781d9967fc0d0ce0b65ec6bda3e05c0afb960697a7d36d2eb68937c63b75
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/delve@sha256:e7f8c6d634b0481b04259b9a64d05650246adda1b4a537fd47b8c08bfaaba547
SPDX SBOMhttps://spdx.dev/Documentdhi.io/delve@sha256:f121e10a55ff2fe0b8699b982275243bcf90c42c0d704db60e14d08641ce5bff