dhi.io/k6-operator
1-debian-dev, 1-debian13-dev, 1-dev, 1.6-debian-dev, 1.6-debian13-dev, 1.6-dev, 1.6.0-debian-dev, 1.6.0-debian13-dev, 1.6.0-dev
sha256:f09d3a85e027d15fdebb9e9260cccbbc67bd4549c07c6d43d34b4139702d9f8b
Manifest digest:sha256:895fdb74f82387b518b199f56996a56a7324c79dc28c9e5e48b2394624c595d8
Size
48.61 MB
Last pushed
9 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/k6-operator:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/k6-operator:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/k6-operator@sha256:e102644a7b29c4cf55198bfab0b860c8fadd3585784a2c182015922869f96dd4 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/k6-operator@sha256:5901a759c659c6102a7d3a478ddb904b0757b0967992433564861b991971d939 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/k6-operator@sha256:ec9fdc0a56eaa5c99e4467bef4b7bfc6bc14f6efc747236a1b566e78260ded72 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/k6-operator@sha256:70753ec310390c327195640194054cca2a1838a4b1378c4236df9ffc68985000 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/k6-operator@sha256:16530c76ad03c29f070111144c9a4681d954a3b3851d2bd7be28159ac3b4cb22 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/k6-operator@sha256:4303baeb116b9fddc26333738d412865b36d2fc2d03d7ff504933e0189257ba6 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/k6-operator@sha256:b010959c251f7f04c6a0000152e7c79b78113b798c0f83025823f44d57df2563 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/k6-operator@sha256:da4bd11dd49c1362611573da52e922bcb7d9f795f6a69b851c41a91aa3f3a238 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/k6-operator@sha256:3f266487ccc2bd861eb5ab746a734a78f4e8fa00f46cb1ee952797fd817be144 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/k6-operator@sha256:0abd55bd42ead65da21b1ede0d9140724a5f78fe998274a63ea1d5c1ba1f5c5b |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/k6-operator@sha256:1bd539f0b88f6b839bf5fc5a563eb84776835dfaa51f7ea726f9583f9a043aea |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/k6-operator@sha256:2353c16aa8af9edbdaed14f5825a64a0cffa20c7e19038f8a41d3fab191dd6c3 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/k6-operator@sha256:9e113f6d63371d8f92edce81e50afa2c6304876831e64735313e5a3cdab26d46 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/k6-operator@sha256:a0eec1f77f1cb63035e29bc507520e0b6bec403f736005e4e5f77d42d6de7cab |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/k6-operator@sha256:e2d949693b8ad491df4db5b1da822d197a25b6fd4cd932599ad8bd0d10ae5af2 |