dhi.io/openshift-console
4-alpine-dev, 4-alpine3.24-dev, 4.22-alpine-dev, 4.22-alpine3.24-dev, 4.22.15-alpine-dev, 4.22.15-alpine3.24-dev
sha256:e489b45b7d2527daa2e6aa115435d4c78bbc3a9c3e0b4e4527091e3495bad4e7
Manifest digest:sha256:f7e4d392432069cd65a836a6a14a59acafb213e4daac9b46cb14852f8f88f969
Size
63.40 MB
Last pushed
3 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/openshift-console:4-alpine-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/openshift-console:4-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/openshift-console@sha256:9a9bd6499dd20973c294a17255d1b391fc2f2fae7f37e9975cf65e3b461701bb |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/openshift-console@sha256:1a7807601bd5a5a5977b36cf588e3824429cf8fbaea4894b378a9d642b7710ad |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/openshift-console@sha256:13714aebf15e7855a8f73a37a93a847a91e47f97282bb1719f721dabc279b356 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/openshift-console@sha256:fb75de84743f5255ca62a11ff228af8953fab2f55c4a04f16c0858c61f837b5d |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/openshift-console@sha256:258d3f8e1db58539e950b7a1d6ceca0ef61cfa2dbc2bc7c2e86fb02e8bfdf7f6 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/openshift-console@sha256:8d7f71220fa6db8fa662b6f0dab42d200a32890655d3be013007a9d504f6d564 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/openshift-console@sha256:dc48d0e7873aeffd4e23a8db10d6a41fa14d6dc38ce03c7ecb1ce354d5deacf0 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/openshift-console@sha256:0bb173496928c9d7aee7d63c880521c51724bfd81bc84eafb4a08625877ab4f3 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/openshift-console@sha256:68b7eec1823e269bf281277e1dec4f29b666b9c4a0387009abc96e0d0c586dab |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/openshift-console@sha256:900b24b44253f2e0533f1163fd66fd20e897225cbcb0f95166da8976ac1349b1 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/openshift-console@sha256:5b8c4b4a55331b31dd49172f3e99637f8501924c725bb83848119da5512bf925 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/openshift-console@sha256:b61721680d74d0870e687624619dac0454e3667062acc4953eee36fb719083a4 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/openshift-console@sha256:d70c9ba3f946d0cf0c8b6034fa829c64f972881c2236e324d7369aa67ddf492a |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/openshift-console@sha256:4dcef32d3ff1d2f6a75cb2d9c0539e84cda3f269bed71e6c8dc5ee6e7152aa9a |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/openshift-console@sha256:62cd3d204ff55d640bb517d0c49bdb9ce7a70012b183de0c024f297c98b3ffcb |