dhi.io/jruby
9-debian-dev, 9-debian13-dev, 9-dev, 9.4-debian-dev, 9.4-debian13-dev, 9.4-dev, 9.4.15-debian-dev, 9.4.15-debian13-dev, 9.4.15-dev
sha256:fe2dbd5ee0ee5c7dc8adbd483a7b131eff581641d7190f9660cfa2b3c52584c7
Manifest digest:sha256:765147109483fa755100201dc1a4f09e3b173dc5f6ddc9688aee186012d19419
Size
343.95 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/jruby:9-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/jruby:9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/jruby@sha256:520af6804b095f5e2589634adc8d2f628bb78305cf1e61e33fd3ff9062070aaa |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/jruby@sha256:e853adacf471af492c35431945d16a3a6d1b017839031297b55c94ad4b55cb37 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/jruby@sha256:f4d303aa5d5d1081492a128f504d001229b9e7a99a401f6e882ddabff5ebbaab |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/jruby@sha256:9300a45e577bf2ddd520666b43d60a00e5f02b07b7ff138e2108dfc1a4b782f1 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/jruby@sha256:dedd9ba0f1613bb5dec00174ee3477fd1160dec01df3f50624185aa43911bbba |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/jruby@sha256:feab9007c78a864656e5641bfd71207611368eea9568f271148d7caf2b8ef262 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/jruby@sha256:355b4d6e3b5fcecb9d730c83eeb834993a58134dfc1e3770326668fda60d2b56 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/jruby@sha256:2ca66918322cac77b08b17460071b0bef2ae4a1ebf6fa26b8fb92c4c23f879a6 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/jruby@sha256:865c54040f992791d05d8412a226d5743b2d2c5cc7f73188210cf2e6ceee34d4 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/jruby@sha256:fcd786c9e117c993c2f750fcdd19e3823bbfc7929d3aca93f51e75e95e569f63 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/jruby@sha256:ff731e43a463cd968ce08a540f4f3ede64d899e0330c48ab095255d21c830d29 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/jruby@sha256:e96da3d3b986bf24e5311b41f24b8a2a66c6cc1f3dfa7f51eb2510ea852c4aff |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/jruby@sha256:ccd47b9159afa08670f6a503d48794755f08831b922f9c6d0f969321511c1abf |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/jruby@sha256:9b0d0d79dc8f07e9569b11d241bb20866270afc4a4ec6c73d30759d16bfdcf1f |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/jruby@sha256:b7c1cef226cb80419cce5c786aab671bebbc77fcdf09a54c26a7a4c3da566335 |