Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

10-alpine-dev, 10-alpine3.24-dev, 10.1-alpine-dev, 10.1-alpine3.24-dev, 10.1.2-alpine-dev, 10.1.2-alpine3.24-dev

Index digest:

sha256:a2151291d79ea14a40c28129826c2bf4ee03481d62a6562b6b584482d55ede61

Manifest digest:

sha256:ed54c761e201b97817ae6ff90ec2bf36c72004aacb2d0e7f8bd7bbfff2dbe318

Size

372.85 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
0
0
2

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:2975ee5636c4ff20c6a25384bde66c54c6e25f200e028a8d6b8b17c68667f44f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:149042274cf08a55d21a5f18f3d60d3e6ed4b5d3438675b4967859f6ff540b87
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:e751808ece4071cb695805c36f0346ceb1452a2a8f29a617f18ba1da264fdb88
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:3075add7130cd25b770588a66ce0d05148587e2d8ddbb4af9e240bfea286dad0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jruby@sha256:180b742acf3e559c4902471615b3d2ececdf872736b6ef80496ca97c40131539
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:4860a39e8db0e74fa05d6087fdbdcdc951339465b76e2aa2d73b2d7d5a3a9ce9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:4e4fe4c1933ff033f8f61831f0b5d324350d045ec0b6548e98e5f452585cfed2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:1987dca88972974811c6acbd22dc28b1942781b5aa7064afd87440ce83c8f789
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:9f3c757bcc5db3b917250d8dad55a6ad2a6cf740cc508fd32b434b437a332c20
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:4de5ea85ecea4ad05c77594a8a01ecd5767aa05d1c526e85e22e2cb3159b1f77
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:5e3e351c7f7dc13f0ed87a1bf13940ab9ee3cc4ada3cbbac2a741dcf8adcbc41
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:efa39dddd91678a3cd7eb425e8d390597024b17177a9a6f77b81ed6051eb5878
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:1ebbc8b01105dead96ce7adaf4f6b5a30f3c6ba7e9f00910df2f903921df21fd
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:13c103c65441747b8c3607d9c05a73189bf89833b4e88b4f5d882e3aae3e2d0a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:825fc3b4642ffd4648b4d0489f86b7d4c4fe38d358863cd9ccafc7ae4bb1388e