dhi.io/kapacitor
1-debian-dev, 1-debian13-dev, 1-dev, 1.8-debian-dev, 1.8-debian13-dev, 1.8-dev, 1.8.6-debian-dev, 1.8.6-debian13-dev, 1.8.6-dev
sha256:4bdd5d0fa40fdbbffddeeffced192ce0e3e952c7d74b139b589f4bb9b9df2abf
Manifest digest:sha256:b9616f365e5005cd01b77ef697d5bfedf463b6dbc7eb605386b56a46c4618bec
Size
103.94 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/kapacitor:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/kapacitor:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/kapacitor@sha256:223defdd8e9a787019da54d1cb29a51d5fbc48108a102c8b7052fb7a03559b9f |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/kapacitor@sha256:dd509ab062886e4fae503ea3f40ce3643fce34563b15a69be5096f7b5b0bb92e |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/kapacitor@sha256:292ee3c4a1f03cd205f7d8ce0890c9ac8908a2f4756c17eccbccc12aef34a22c |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/kapacitor@sha256:dfbb5a655c685c5f78cf8acb0af932085452bc880265fe5e306195b08de9b288 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/kapacitor@sha256:1749d768be8f830f3de9fa6d57210af9f88cceeb2922e70cee7e8c969a6f7452 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/kapacitor@sha256:eaa90de375c49f77fe71b37f0b72afd0d39516c8ee176781b5cfdba60946d6ed |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/kapacitor@sha256:ed3b8582f7f1698fa727eb75266a5a7000b67caabe2d832faad4754757ffd063 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/kapacitor@sha256:3cbb5f21e772ec4b06d7ce244dd1c6f8219fbb811ba0bf6e5390e0fdf8e6ebcc |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/kapacitor@sha256:aa887e4a35b08458b56cca6462efe7ba5754bbf6a3f50e163c1d0d3a5a2b02ae |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/kapacitor@sha256:3c074fe319f8cf04d792d6060b75b3c2a0154db41ce7133fc25775b8afdda2cf |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/kapacitor@sha256:41611ee2ba7059159f82536d859c2b620003d6b3fd5fdd02622148546debebff |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/kapacitor@sha256:121f33665b3374368d73ccb1e2674636cea1e9cda5ef8b4bc88dc5954f50f779 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/kapacitor@sha256:467bc008923e3ebbd8c377816ebf960e12e25081c7ad82242db617331d75b51d |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/kapacitor@sha256:d923330b8c155c940006c1ff624da35ecab636ec7c6f16457c717666acb6840d |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/kapacitor@sha256:2ccbe1f9d6043e2b1c9a9cbabf8a4213f3934dca1ff9da53ddbde71a03c65e26 |