Sign inSign up
NATS Box

dhi.io/nats-box

NATS Box 0.x (compat)

CIS
linux/amd64
debian 13
Tags:

0-compat, 0-debian-compat, 0-debian13-compat, 0.19-compat, 0.19-debian-compat, 0.19-debian13-compat, 0.19.7-compat, 0.19.7-debian-compat, 0.19.7-debian13-compat

Index digest:

sha256:5cdce9bf003f7c5bb904d47b4f5ac593aba833ead8aaa17b9b1c4a25a59256c4

Manifest digest:

sha256:822cc2ff9c6b1a383731f8aa8a6319c716c5a7b75ec9f8eb91ccceb7083f2716

Size

35.25 MB

Last pushed

6 hours ago

Vulnerabilities

0
3
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/nats-box:0-compat

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/nats-box:0-compat --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/nats-box@sha256:54568ae963fa5b60ace0557ec54c85d51d6f48ff0fd45ffa39724a179ccab86a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/nats-box@sha256:cab373dd6bc88e2c6fdeea432e0313b7ad47037aa324f2fec81b0fa636cbaa48
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/nats-box@sha256:08e2fd7be11b11b977769d0e1f73ec79a697a4691a7afb3b5fc6605d6ab6a003
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/nats-box@sha256:7d0de4e2df7173792e90456b3246c256c5940a8c63dd15706f8a91c3d6eb83cc
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/nats-box@sha256:799880173f3a6a46fcf0193b7955a40ad6b5aacdb733f249da4a5229cd6c87b5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/nats-box@sha256:2edc7b905d8be7c84393d5cb6ac05f137f4a5a4c7405c16472a5efb269bf5262
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/nats-box@sha256:4c2dcbd7b2f885d70c147f67bcc81e38bf25dafcde3425f7b13a0da2376e3124
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/nats-box@sha256:98008c5854fb1c2619cdb633a625fc9d95eeabbd57d1ee56afc33e1f48dc13d1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/nats-box@sha256:d8b667262f9965639c4031554c3f14f959f0c8de3734a07d88134668b2cff731
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/nats-box@sha256:55345975e918289cc044971efe88e734eb63cd1b675c614118ac99906fe49c37
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/nats-box@sha256:ab237792bcc4464700ba138cac5ef4ba69dd686ad90eeb73a19e5e67e4248dce
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/nats-box@sha256:cfeddabd7942b48421d8bf830450531b76108c1fccfd1b9516a7ca773bd3b2d5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/nats-box@sha256:b72b784888ee2471042e6a02b2997c12fb443071d8daf96cd820ca96a1a889d9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/nats-box@sha256:ce093d7b6254ef401eb836e185db91568064e847576db8b14ce1e70c261f0f91
SPDX SBOMhttps://spdx.dev/Documentdhi.io/nats-box@sha256:a60a578bf8dcd890af8772c20cf09e98f4c8268083cb01d5d6ccec4286b31083