Sign inSign up
Open Policy Agent

dhi.io/open-policy-agent

Open Policy Agent 1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.20-debian-fips, 1.20-debian13-fips, 1.20-fips, 1.20.2-debian-fips, 1.20.2-debian13-fips, 1.20.2-fips

Index digest:

sha256:1416b72a4589cc8ebf0089492a8a6f3b848441d0a992184bfbdb8001374941c4

Manifest digest:

sha256:58b3a81201d6ba07bc9b76adc317e58a3284b6b36fe856760b0fe92c2447cb3e

Size

21.12 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/open-policy-agent:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/open-policy-agent:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/open-policy-agent@sha256:995e0fae6034bcd7b4a4230835c8224366dc3e350ee745dc5ee5d75df9737730
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/open-policy-agent@sha256:fe111b1f6490c9e2693673882b56c89336617dbdf63d71617f434c3d10e2dfe6
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/open-policy-agent@sha256:38657771a09c0de24282a26ec13f1cd5b3bb058bea500eb101d518461d7dd956
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/open-policy-agent@sha256:b77313ece0abb4508b3b54e48c1f332415a8b1065d45a08fdeb8989e85f66967
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/open-policy-agent@sha256:18fc103cfb1ec6f9b700942f8bd061c12c32e0ef321e799d49cee1aaeb742354
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/open-policy-agent@sha256:ad0535616362c5a88d10f8dd76df053e4d922e1b4c0ab736f3fa85394c31a79e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/open-policy-agent@sha256:416d3e2e1d9b8ca5f849cbe69a7f6aa18e99ed7f96f8048047832caea50f4868
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/open-policy-agent@sha256:efd1e086c2a203f4db3b7430e018b15fe54f38e84afd5b29bdd488f2dfca98a3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/open-policy-agent@sha256:813f7ccad42a6c1bf57170976695bcec5d17640b7c1461b8df7a40114746505b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/open-policy-agent@sha256:33ab672656b9a559dad09ce88448e170f362ba42f50743ed941fd908bca4d78d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/open-policy-agent@sha256:90e1b3d777a7decdafdaa923c135d254dec3bf100b5be014b54300a8f26065b2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/open-policy-agent@sha256:f396af4be5217d3bcfe01dfe6d35ed19bf6b764cac91b6996ab83f5eafe9222d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/open-policy-agent@sha256:ed7a714cf3f6b84ad950b34e65f194381a450b3358a849936852cca194511133
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/open-policy-agent@sha256:7c3aa0250b181eb1681c48178570eb6339bae693b76a7cf31f77aaab570d3e23
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/open-policy-agent@sha256:ca23fc4810803dfea351c723437ed8b77d1991992e6b38b9ea57ea777096b2f6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/open-policy-agent@sha256:12e519b7ecd75ea54925e11505efb36f306dcde292c566cc7c368c9ccb63e49a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/open-policy-agent@sha256:c6b9c582895af5cadc65e6dbbc7825b2462778770e57ca0a0c6ab9564b70716c