dhi.io/loki-canary
3.6, 3.6-debian, 3.6-debian13, 3.6.17, 3.6.17-debian, 3.6.17-debian13
sha256:e89e49f77a0ed4db52d27dc99248581e5f0904e176b5f1487912dcf1750556bd
Manifest digest:sha256:7e72d3eaba18818722d325ac0fb4e4f33c87a0edf96b6d1d566b892f08b3980f
Size
12.61 MB
Last pushed
3 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/loki-canary:3.62. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/loki-canary:3.6 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/loki-canary@sha256:0b5cecc775c82cb85cbd03bf021671d89c244881c8355517d3b30dd0505febea |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/loki-canary@sha256:b701d538a92195d4657390e74849f877d9381d43eacc9e0b5dd39509f46bc365 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/loki-canary@sha256:91370455d57a3ef00e8d1f1a4091b245e4a4a682b8b738a58dd3fcbbe687d2b0 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/loki-canary@sha256:1d79a2aadad5e4993d8f9b0f3834598ce51353354d38e440af7a2d81b79e2768 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/loki-canary@sha256:e75db7525452697cea7473c89c068559a06e985e5975f2c13d32eda487d4134e |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/loki-canary@sha256:a7355faf4db7e0bf470bbbaed8b1929e0b5e0e3156cfb327ad4ef84522df0d96 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/loki-canary@sha256:a4318b81525947ff99bcb0a5294109b199694d4e11f72127332b1a979c601344 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/loki-canary@sha256:20433609ae978f597992e2bec71f792fbd1547c9c46f0e1571420eb1e1bacd40 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/loki-canary@sha256:c62c1b3db407ee1127e9d33e48cb123fc5be7ec17899e6e0c243eb5074fba458 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/loki-canary@sha256:e93d31927222885fec05a3f0fed514efa9b9e7e23338ab7c68aa6d1bd9c5fb1b |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/loki-canary@sha256:8d7759d72e3fbaf305ce5ce34aaf26daa1539deca39e6cce1ad47524ea7fb415 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/loki-canary@sha256:73ea326639dc96a5a90b29c36432886e209e0b0eaf4579a44c8b37722d328ede |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/loki-canary@sha256:a17364d469371e24888335a0beea38751e16ac413e5d942d2011f8061f6ecd63 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/loki-canary@sha256:f174288558a720acb255df5604350f040ba2e9442e8e01214a3257cea17d2649 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/loki-canary@sha256:6f92c3e131cee7d477ea7e2bc484b416d235b0eccf1296d070ed8be25a7a477c |