Sign inSign up
OpenFGA

dhi.io/openfga

openfga 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.22-debian-dev, 1.22-debian13-dev, 1.22-dev, 1.22.0-debian-dev, 1.22.0-debian13-dev, 1.22.0-dev

Index digest:

sha256:3da21045b6b572bbe8f141cded1cfabcdbe4ca88c7e5b5ae08bf3cde7cf894a1

Manifest digest:

sha256:6a997624f70bb8a907d8b7d15dcb1e8307580a1edac658a13f69ef51b78def0c

Size

64.65 MB

Last pushed

19 hours ago

Vulnerabilities

0
0
0
1
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/openfga:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/openfga:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/openfga@sha256:d20198f771d4cc489c4347dae41c327f55ad42ddf24d00b39dd3adda1fd806a6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/openfga@sha256:b6d83af8fad0b092fa63dfbee4d94b72522a0fcef7891ffe3a750b8584e421bb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/openfga@sha256:3f8eef7078228a07a5c7449cfbc7de08e660e3f232e298d0cc17f75033a9345e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/openfga@sha256:eb10f90338322b3c616dba27925fc255a92b8ff2c95d8aa98508a3b5e1447611
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/openfga@sha256:15cfc59f7e589a01a84337b8f50a331d11df23a5f6c158c9fea530cc19171f78
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/openfga@sha256:ae170c79e4a01a3c1564ff7c3d8953c9d143bb91e3f849e97b1a3570bd643db3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/openfga@sha256:02562a6b7595ad2201cf41bcb4840236834b89a345a3130e9ae195cc880b2eba
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/openfga@sha256:e8b2bda9dc093489f56ae6befd37f1c8f7e4a63ac3c287b0416faf250df00704
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/openfga@sha256:227d8b5e3bc6242d3ee9cd0e30e50faad1c75be6b1d93feefffd6da22f42a2b3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/openfga@sha256:d7383546b6e29f75c8617353311dc62fc984c3cf8c1bec9760603ff11c2cce73
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/openfga@sha256:a557385d519fa3fae9ca9e3004bc56e64fe82ed48a56429dd534742607f8b77b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/openfga@sha256:9cfe1d64664e96e71350c426dfad2427d066d73cf3783a3506632f4c9ed925a9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/openfga@sha256:30df8bc3b22b90d8cf85acc382dc13f4339bfe09002a399044c97c7bd9bc28a3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/openfga@sha256:072d8fe7254c41ac172f73368deff1279486e61a979867eeedeea3a536769068
SPDX SBOMhttps://spdx.dev/Documentdhi.io/openfga@sha256:e131c2a0a3cf96dd7fc22f04ef359add2ddb27b57fd621a63238ce0e7c9bc640