Sign inSign up
PostgreSQL

dhi.io/postgres

PostgreSQL 15.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

15-alpine-dev, 15-alpine3.24-dev, 15.19-alpine-dev, 15.19-alpine3.24-dev

Index digest:

sha256:d9d957129c18a82bcddcd7f2d75c0b17d1f34080e4e917afd21d23def23c876e

Manifest digest:

sha256:47dbd7eb8d4bd89e93105f9bed0ab06ccc2ee766e3640f7f37c5b38f0c696387

Size

133.63 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/postgres:15-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/postgres:15-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/postgres@sha256:bd5990683e3b277b4f12412ef29af5c33fb94fe5a14647dffd32f6c732f5a60a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/postgres@sha256:7873c2b5b6f6a72f445285c10261763a2bd444267bf92a0c48454dd6137d3ee0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/postgres@sha256:02a1e488a6ecdb38ede9a1cbc5804b0281b62be2e2639dfb645f1079e89c1064
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/postgres@sha256:baa3c90e6428428862255a6bef19e527de314567f8fdbac5a4bc77065f075dcb
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/postgres@sha256:3b2d9a68b4777ee95f96898cd1264ea605cbcc5856e1e694de9c27c39c6f9ab1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/postgres@sha256:da4bf51ce8075f96a04231b4e77992c0d2af68a7ca9635aaf2dcc823fe3b591e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/postgres@sha256:b5e90f0988f61657f21f3630d8c28bb05acac04b5911cd0f481d5e1063ae780f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/postgres@sha256:46f3641e94976e7f1f43060a8bde3f2fbe1ea8f38b2ed5c5e4e6fa0ff2485a30
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/postgres@sha256:be7993fcd8ff09134adc7aa139da2f0de8902cc98bb32920418bca2b5630f49f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/postgres@sha256:ea1417dc6761ac1455dbd967c33ef7cf37b7c20750041564966cba032ed25573
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/postgres@sha256:f633ecf8857a34dcc1d7a5908ab956c23a50bd0ec975df3ea3c598e49fc18e89
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/postgres@sha256:7ac30dce740e4bf0696909c935d2eda3e1a4f0578f44c001fe28442465aa5086
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/postgres@sha256:152ee967daf2c2ebaed3de945aa5a4a3fd39b081b5b4002c7bb09d08500dbb2b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/postgres@sha256:3088819f3fa987314d108a6f85ff842d712c612c66ac4c0561631cb2b7b80ac0