Sign inSign up
Neo4j

dhi.io/neo4j

Neo4j 5.x

CIS
linux/amd64
debian 13
Tags:

5, 5-debian, 5-debian13, 5.26, 5.26-debian, 5.26-debian13, 5.26.30, 5.26.30-debian, 5.26.30-debian13

Index digest:

sha256:ac70cf581c947c9d54eeb1002b98cf61f9ebc3ef6e99187ff2c3865e160cdeb7

Manifest digest:

sha256:f2b3162249922eb1a220818b4d7a68bd2c5b771496c332e549379c7f9bff5316

Size

163.22 MB

Last pushed

1 hour ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/neo4j:5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/neo4j:5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/neo4j@sha256:1689238d7b0d4e08ccd72b1ec72aa9e3b589e9a38fbb54fb8a87ef4fcdb2cca2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/neo4j@sha256:db06b4307800a193abdd6c8e5f174756d0372c744b26691f470e4abef79bb28c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/neo4j@sha256:6d8f49468f71a5b672ad891b57c52ee19edfa10fd2e284c04f6b1ed0dc374f7a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/neo4j@sha256:ee3da9a7478bc679ef98c3e800c89e7971bca8143e006bd3c034045bba4c4e23
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/neo4j@sha256:e8c497fda185d469d31443882044af33e58f0a729a6b8f3e248f74e8c8e9f38d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/neo4j@sha256:92926ce52f50de5b47f95b8e6822a3a31a6cbb99640d51a95ed5ecdf0e8e4d38
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/neo4j@sha256:87b100f5a701d2b85ae9a325cfc5771df9b0b55c5a25da0deb110b84ce7b93cd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/neo4j@sha256:2e596e78dbc7bf0c77375639bf6b28918fb7117cb1880c10dc49b18057c986d0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/neo4j@sha256:1293d8092e6bbb7194d5ca817f57334f754371e7928c56334d1f3b97f6434a08
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/neo4j@sha256:27e3b0ae2393a51dacbb08a230fabc7a67329312277cd9b89a6d7065f96c27f0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/neo4j@sha256:6075c27c31b62ecc71b93007e5c97a539368e13f27d16a49d8a09d0935b3b811
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/neo4j@sha256:e266079bde20a0b48125cb63c25bb03a4189c6947c2d5a333d3615f928dd480f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/neo4j@sha256:eed89b7a31bdd8e2afc9fbfa1bb4eebb54aed7bc1d2468c46c0d406a55e5f12b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/neo4j@sha256:a5691588b5f2238dd5088273b576915c48a8d209d9ac332c0fd82fded326d262
SPDX SBOMhttps://spdx.dev/Documentdhi.io/neo4j@sha256:375cc1fe85f6b8d6136cfb2dac882ab52efb846a64d24bcaec68898bc5c2f97b