Sign inSign up
Kapacitor

dhi.io/kapacitor

Kapacitor 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.8-debian-dev, 1.8-debian13-dev, 1.8-dev, 1.8.6-debian-dev, 1.8.6-debian13-dev, 1.8.6-dev

Index digest:

sha256:4bdd5d0fa40fdbbffddeeffced192ce0e3e952c7d74b139b589f4bb9b9df2abf

Manifest digest:

sha256:b9616f365e5005cd01b77ef697d5bfedf463b6dbc7eb605386b56a46c4618bec

Size

103.94 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kapacitor:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kapacitor:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kapacitor@sha256:223defdd8e9a787019da54d1cb29a51d5fbc48108a102c8b7052fb7a03559b9f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kapacitor@sha256:dd509ab062886e4fae503ea3f40ce3643fce34563b15a69be5096f7b5b0bb92e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kapacitor@sha256:292ee3c4a1f03cd205f7d8ce0890c9ac8908a2f4756c17eccbccc12aef34a22c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kapacitor@sha256:dfbb5a655c685c5f78cf8acb0af932085452bc880265fe5e306195b08de9b288
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kapacitor@sha256:1749d768be8f830f3de9fa6d57210af9f88cceeb2922e70cee7e8c969a6f7452
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kapacitor@sha256:eaa90de375c49f77fe71b37f0b72afd0d39516c8ee176781b5cfdba60946d6ed
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kapacitor@sha256:ed3b8582f7f1698fa727eb75266a5a7000b67caabe2d832faad4754757ffd063
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kapacitor@sha256:3cbb5f21e772ec4b06d7ce244dd1c6f8219fbb811ba0bf6e5390e0fdf8e6ebcc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kapacitor@sha256:aa887e4a35b08458b56cca6462efe7ba5754bbf6a3f50e163c1d0d3a5a2b02ae
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kapacitor@sha256:3c074fe319f8cf04d792d6060b75b3c2a0154db41ce7133fc25775b8afdda2cf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kapacitor@sha256:41611ee2ba7059159f82536d859c2b620003d6b3fd5fdd02622148546debebff
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kapacitor@sha256:121f33665b3374368d73ccb1e2674636cea1e9cda5ef8b4bc88dc5954f50f779
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kapacitor@sha256:467bc008923e3ebbd8c377816ebf960e12e25081c7ad82242db617331d75b51d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kapacitor@sha256:d923330b8c155c940006c1ff624da35ecab636ec7c6f16457c717666acb6840d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kapacitor@sha256:2ccbe1f9d6043e2b1c9a9cbabf8a4213f3934dca1ff9da53ddbde71a03c65e26