Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x (dev)

CIS
linux/amd64
alpine 3.23
Tags:

10-alpine3.23-dev, 10.1-alpine3.23-dev, 10.1.2-alpine3.23-dev

Index digest:

sha256:0c52e2c11a086d23ba08ec32c38f56d6e1cd5410b68941553501ed9d95e02956

Manifest digest:

sha256:29ede39823d3f6108c8d1263665ac3aaa8cebc6bb061fa694d63c130123f97da

Size

372.53 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
0
0
2

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10-alpine3.23-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10-alpine3.23-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:45d6dce16ce9e44e038ed33caa83343b69fac34e17bb8f2df65255799e4b1182
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:08326c350a47e2aef0151aeb9cb59faf1aeb1d14a673915d4d1b6df027e4e079
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:1052ca8962126f2b9783440a24a16f3a574fda01d712c052c3ddecdd2e25e599
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:e7fc8f8b5db716b713977b2e27f9cd268a53844fdda66dcc092b8e3b72c06e40
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jruby@sha256:98f6d51128ff3b8a9889172c998326e7c7d91568a23dea2a2f74b96f839c7bc0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:d7a6b3979d0a3ba7769b6619bb7616112e69d983bc208e6500f2edc80aa22a11
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:440045b6d0a4dc46b200119b38fe3d6aa14de76f1f971b4228c9091e4d79fedb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:8bb11add44a38c7b0e8de1c94785ab4dd994937c377a5466660c34cd6f3ccfdd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:262f381577a8769a62956a5434b9383a701a4fc416578a10cbdb8aa1ef35809c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:44b111217fb0900fb51f3dd720ac69535a3c4812027a00038999e04022ec58f6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:a37815b512d637baea4737865920c9fda8081ea58e1d2051d7f817f8211cc399
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:27b445478d1eafa205b8b80e78164690bf0e83dfcda4fa59f7edbbd5eb5bd537
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:40e24e493aa998dd9d191d358b643df8bdf9dab33976168b57f2d9d03a2bbb56
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:fc5c6e2de6a479290cee19efcecbcec2cfb8ca76d535a9a5b3dfeefc1f4308c0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:ea70868efe70da747e0717bf3f7b335fb59f37d789be52d6b21b2d0a4b08368f