dhi.io/kafka
4.1-debian-native, 4.1-debian13-native, 4.1-native, 4.1.2-debian-native, 4.1.2-debian13-native, 4.1.2-native
sha256:e6acc07b9ba7fabb8d25d4acafe60ca80c68a4dc145370a8dba9d18dbc119d3b
Manifest digest:sha256:73347aa343fc5249464d4254e07734b718dc9389aabe62011278257c3609baf3
Size
48.26 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/kafka:4.1-debian-native2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/kafka:4.1-debian-native --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/kafka@sha256:722ed52a3fe656dc7af756574851d33823d3e180206a8d8909b2c4ba61ba7812 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/kafka@sha256:f15f6558f44af96e0450eaf686486b79c85e5c60da8e7f768bb71cb4e4584866 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/kafka@sha256:85178f9ddb03035feb7a718423825df9111e3b7a88e9ae86b81d1eff127d9604 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/kafka@sha256:3549ade168ce1c8f6cda22b4123f9b1239a594df1fe4861db44acffc80698098 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/kafka@sha256:2842341acffc179f429e71c370b269a16fa6818657b685a9de70a11aa52a5bc7 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/kafka@sha256:8bc83649a034d801012205b3ce8fd44efec3970bb052e311ab3844816cc0ee67 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/kafka@sha256:2df6913aace471b6c5f97a26b6b3997d7dd67ae1ee6980b7c3a9b704bd932e32 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/kafka@sha256:09084970d4a5b4ad5177c7645e07c3ef5bd3743d0cef6c10e79bdbeeb7ec8b8b |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/kafka@sha256:d3dd6f887f612739bc21454a4648328dc40fed24f325676e3088db9a5d42a858 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/kafka@sha256:5ea7698fd8172e7be3d4c57f37161dc8025d4f377cf593c2e503a44c1862e3d8 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/kafka@sha256:4ce878632c6579d7da81e59357ecf767b5467e18141e9d08372bc949613cba78 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/kafka@sha256:09659f0714d6806e3bb9f0fd7322c0e71aefba5c9ca0cfab7c15c01f13910d4f |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/kafka@sha256:d1fb6430e70a75f5b49814053da351cd21d461fccc6be065452d78198e9e9c5a |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/kafka@sha256:0ff7d2915dd927a70ef72d6ab1b8d148250983ebc64223f36c91cb9bf64c22c7 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/kafka@sha256:0c983be6c66aae193b202e9911f91c790db65348cf4ac642338df6922c654321 |