dhi.io/jruby
10-debian-dev, 10-debian13-dev, 10-dev, 10.1-debian-dev, 10.1-debian13-dev, 10.1-dev, 10.1.2-debian-dev, 10.1.2-debian13-dev, 10.1.2-dev
sha256:568dbd496d1627d1dd5ab023439c9b163f7c8d9d3234f53c2ae32a26fcaccee5
Manifest digest:sha256:27f309b2535936098ca35f7ee439fc09ffe26d87b100805db9a938f495b7e98d
Size
382.46 MB
Last pushed
1 hour ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/jruby:10-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/jruby:10-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/jruby@sha256:e8cea2f701fa5c2d8581c04a875596876725893133d78e5c04a682c06319922e |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/jruby@sha256:bc799dce68b8a213dc6d4565da3024c7eb8ec7b475ee31d53b226f34cf92e629 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/jruby@sha256:a03cab2ebdd1f034557117a4688bcba00704e77b2ae01bf58162cd940028cf8e |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/jruby@sha256:a80358a320e031b614540ba84c12d7340018c843ba851e4f2ab0dbc6af6617c2 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/jruby@sha256:c08a7d87de5682ddc65145337cb0c49aacc4f902d76a8bd37178302ca456165e |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/jruby@sha256:1902369dcdb606f51ff4e7bb0c0f3f42af4e3022b4052ea8fcff11e43aced2ae |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/jruby@sha256:cbc217c03954bae38e1094775e802bb8b3e1b4eda8ab81d124715ccc8dec5359 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/jruby@sha256:c317e9f1ea620949ce353c40f0ece23af2dd531436dac4ba5eba7930434ed6f0 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/jruby@sha256:d55594d1017ce42bb33f3ef3132a79a438d3526590c80cd7aed0c899c9fd7b3a |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/jruby@sha256:2477a689e46139e34f16cf8df1afff25a1176d54f2b28caee63bc2ea3cf7fa66 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/jruby@sha256:9bdd59ffb6171ea923c3b65c16e229737fd8727e3cee19d75e0b74fd802f78a6 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/jruby@sha256:a29d04891e93706f546ab600ef223f19a1f010448b0076b9b04286495f5c0ce1 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/jruby@sha256:29092525cae4e2f9300f048a47800299292d4f6a7b82eed095732c0c36fa8c94 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/jruby@sha256:798a90e8efb07a8981f9d50a13e6b748d1cc479e8d748b92a527927d9d8961d1 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/jruby@sha256:80f283ff02d614f9a2f8125b4ed85b30c3f9055d3f349b45e09465a7c6f8397c |