dhi.io/kafka
4.2, 4.2-debian, 4.2-debian13, 4.2.1, 4.2.1-debian, 4.2.1-debian13
sha256:a6c69fa8b77d98dae8919c944ff27da3811523c1548dad88940eded7ef331546
Manifest digest:sha256:d6675f1387705e741e3775515abc197c545bde893b00c5ccc2d210bfc5a0526f
Size
181.24 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/kafka:4.22. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/kafka:4.2 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/kafka@sha256:4d496b53448d63ad4b96b3079b3089172ae68a90b942e11b74fd83cd41ef3b6f |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/kafka@sha256:44760ed71f1e76321c44f810700e6c860104a1a907d388bd5bc8018a5b9b0f0d |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/kafka@sha256:b921aa7ce6bf53a5aa9a0168be805a65a2142fde6db599b2e79b07d6d1d52dc6 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/kafka@sha256:5089874596e0659e4f0adbfb4026c9eeb9bd375ec6f1e377b20ca41f3e001d27 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/kafka@sha256:5c56c4f5b447e05b2b2a9a8ccf55c986df2b207b158a3e3d97840c3cebbca5a9 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/kafka@sha256:e190705d891a2c48b45e6276afa29e95ffef480f295706734b53e5921b6b6685 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/kafka@sha256:fc2f0a24f712de6a36a74944736076d189913aed626aed0af1a58bb5680a2ae1 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/kafka@sha256:4a6b90984191f4f9053b6ab7ff11b3bb01a0d4854b2b2e9fcf79f608ca80b2a2 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/kafka@sha256:88ada65f2254a4203128e95c00b0de81d0a78f6385d55242a02ecd3a45cd049f |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/kafka@sha256:00fa69dc6c1f12f3f8c475a3670f56b8f2da20cbf39fc4cfe1223b222d5a4b51 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/kafka@sha256:1d8aecdabdf8d094924db90518f160614bd8b660ed9e4dffba1e13bff00ad26e |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/kafka@sha256:7e601c87f4489ac0f33d55a9bb6d535d286dff8d33430a82678950951fb20f29 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/kafka@sha256:e85da7d504d88d840c53088ddb843c139b1be8342d04b91c0d86c13de1d48cab |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/kafka@sha256:cff2827e4a173474f319253aff647cce118108f684ff7656875706152f960b38 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/kafka@sha256:2bc4acf815f172c28eb7fed942f702e0fd0f8d7baaa202a51019ebc90ae0c1c3 |