Sign inSign up
Delve

dhi.io/delve

Delve 1.27.x

CIS
linux/amd64
alpine 3.24
Tags:

1-alpine, 1-alpine3.24, 1.27-alpine, 1.27-alpine3.24, 1.27.2-alpine, 1.27.2-alpine3.24

Index digest:

sha256:4420ef5c0ac1e8a2a8e07c7a5230abda93189a345d0561e0eef3300cbae2de98

Manifest digest:

sha256:9663e726dff09a9bff2a5c99298cfd9d40496f0f89707c2269d9bf553ebba102

Size

6.12 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/delve:1-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/delve:1-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/delve@sha256:50b1bb62a56d0d2929762b971cfe2bd56d03c63d72e13c555466c8762d0824c6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/delve@sha256:69354cc8690ebb96ed9be138a1dabb9491cf5149fef81de26a950a8be2c7e438
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/delve@sha256:aea43b0edd564f6326fe7028019ee191063c48650aea259bf6aa26ee10880c4a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/delve@sha256:f9f8265c0b7e8427011a174148c924d017cf58876ea3fa8e443db285123ad64d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/delve@sha256:f14bfbb381ce2c3a9fe9eb49281a8fb70046afa5ca2134b015a3f7db30208c4d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/delve@sha256:dcc61a1e86f7f8affecc938e012766a18901341bfa27bfe3da17c516b2f6c139
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/delve@sha256:e9cf234d2e78ebbcd464153b094198ca5648cd15d14ae944b4d675a6d199e8db
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/delve@sha256:f82613531d7b145294f2c0899088367388f83d9abcdc0b683f4a2c3b4e680354
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/delve@sha256:02dd3bfef28525892a5e2f40c680c7c4a8eb77e71347924726736d65263458e4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/delve@sha256:8b468dcfd1ac97c4916e90e502e3cd246a24644b39f729959887cf41f6f51b08
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/delve@sha256:3c11b3cad2e927344344c6eaf8ef16d7f48ded8f51fd3791f3c6a36c219a0b59
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/delve@sha256:b1e95ea1c8e34471d8f50f9c1dfa0a85130f6d6b1de5232e1f2c795ae3e86c3d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/delve@sha256:3781daf700a5c7bd6efc8f163b9ba607df158eef2bc524a0bf90da250e2f6fb4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/delve@sha256:bcc4d6a65b73c0f2db5bdee4be8ed6c172f18dbf19a9aeffbd29f4c5d7e4fa18