Sign inSign up
Neo4j

dhi.io/neo4j

Neo4j 5.x (dev)

CIS
linux/amd64
debian 13
Tags:

5-debian-dev, 5-debian13-dev, 5-dev, 5.26-debian-dev, 5.26-debian13-dev, 5.26-dev, 5.26.31-debian-dev, 5.26.31-debian13-dev, 5.26.31-dev

Index digest:

sha256:50cd8eefb22313d9e094290b9ff40896b005975feed16ea7dcd4b619d6ec8303

Manifest digest:

sha256:5658e880e9634e0875f86d58506842e0db8251690618201d945fbcb79be2fb56

Size

173.78 MB

Last pushed

4 hours ago

Vulnerabilities

0
2
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/neo4j:5-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/neo4j:5-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/neo4j@sha256:7540ce05b6c7e8196ed75ce9391771fdfcb0bb58bc6186bab011cb2be14dd795
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/neo4j@sha256:d74d2b24d6a5f27136c73dc981451b6728d4a15c1a59bfce8d8db3dcdba34be5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/neo4j@sha256:be5db1c0a0a5bc0fb312af42fe23b65ff61ac3bf0feddb3106e44c8daeff49ce
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/neo4j@sha256:fac754d2fff2781912701a57a97cebf5d6d05047c015b6f7fbb1ad85e628c441
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/neo4j@sha256:babe9b6df2d9e4a7aa7df15550297a48f9271729af1c705eaf738764abc67121
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/neo4j@sha256:ba1a7552bb6933d2ff2c0277dce92ff8345997fc0da35d260309efdd2c1e1228
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/neo4j@sha256:38eb80047bc0416bcaba37bcc142838e28f72c19cb464c211d632121ac6a5990
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/neo4j@sha256:bc3ee85b66af2aca20e87a0602fdf65d435ec11836e6937bed66d747c60b646d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/neo4j@sha256:69224565086533d13b4139e7f58822d5abd8f7a442081ac6e5c117e8aab5f144
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/neo4j@sha256:28cdb916eb908cf9937246694eb7e3e6f79869ae95e6aee9dd1ca4a89103ec6f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/neo4j@sha256:0718a160a8bf7d4baf8f375ac3ae3b8e4858726150ffcfb67245f08ac27bf8dd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/neo4j@sha256:64df3ebc74c3e5e96c2564e6f92611dac8f1d2956f2e29ced8b1fbb726f76c66
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/neo4j@sha256:2dfb161f0f043c701851c9877f5a31a4d8ae178438a6195a643d7052db76a540
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/neo4j@sha256:ce42f275456fc9266b478bb068687def6b9d366507d7cc9dd0223beae94b80e7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/neo4j@sha256:7c967adbbefdc8dbf4d960859adade8465c5aba32ef049d4b54ef8e6a582bf1d