dhi.io/oauth2-proxy
7, 7-debian, 7-debian13, 7.15, 7.15-debian, 7.15-debian13, 7.15.5, 7.15.5-debian, 7.15.5-debian13
sha256:2cadd1f3c20bd0464ab226139968cf165e3843830ab438541b449a2e27b0a630
Manifest digest:sha256:71f39162086df2081ced719918d81b3aa43b4979dcc12f08892afb58bf33c95a
Size
9.72 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/oauth2-proxy:72. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/oauth2-proxy:7 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/oauth2-proxy@sha256:29a97820b33b4bda1f1362b4a7861f45de7ac65dccda71256fd97f8dcec3ad7e |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/oauth2-proxy@sha256:5b2925f623fc170c04dcea076fc103f2fef01a6e42b8da14c919527eaa03999c |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/oauth2-proxy@sha256:b97246739608a4cec01eb448d9436298c28f10ab830a44034567e4a6932590ea |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/oauth2-proxy@sha256:a5db38def5a8022bb60f29efc7ab8add5b042876dfec86451d8e94105f1d3590 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/oauth2-proxy@sha256:7d599de0b367858972dca6106a9ade2dc13f00d474f59d99896fb5d9416cd0e5 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/oauth2-proxy@sha256:a0ea83391b3c769a22962679da3ad8a5ab2fc88b6df24bb42ff85b24f07d76a5 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/oauth2-proxy@sha256:593ed5a94fa6de6c43a45987419e9d2a62f095da6ece1179c7552ec8f539c226 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/oauth2-proxy@sha256:0fab0c6f4cf3a90245a72063baea7baeece5414786e59179e29911fabc599672 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/oauth2-proxy@sha256:7f546ba0bc837820c2b91c7c153ae8e7b792dd68ac015810c926a7aa88780c8f |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/oauth2-proxy@sha256:109407cc85f91dcd33705f9eac7c76e97a6574aee91f5c7b06a176893744e188 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/oauth2-proxy@sha256:52047faafec6aa0e9b3278791bb085d0b46ba08eb85c130dfd7e2210381eee46 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/oauth2-proxy@sha256:30ced6f34f3079f4a565aeb60ef91dc069fca174a75c5333eab2c640def81e10 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/oauth2-proxy@sha256:41bff7bb324c4d729c321f1b581bc8c559a509636f7899438d51b3629cdf2f07 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/oauth2-proxy@sha256:a6de60065c0f26292c42c2b13a1c0f7767061177bd07251680b6ff8209f455a5 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/oauth2-proxy@sha256:1f1c98c5814cbaa164b128cb97176cd90011fb5af97287d7e1747523bc08c702 |