Sign inSign up
PostgreSQL

dhi.io/postgres

PostgreSQL 15.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

15-alpine-dev, 15-alpine3.24-dev, 15.19-alpine-dev, 15.19-alpine3.24-dev

Index digest:

sha256:2d101441c85b5676197c6c8eb04d0c51eabd9428056e158cc1fde0cc25997921

Manifest digest:

sha256:54e554d04604541f3dd7e982dc158c1c282e22e90747d8c70179cacdefef4818

Size

133.63 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/postgres:15-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/postgres:15-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/postgres@sha256:f15a4fb7bfd38c2bef13e0e69ec73db3627496c8bc64ce0e67331e340d003fd3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/postgres@sha256:737de24524cce850415641dc6cb22863c8e64ff9f4c2b9cacfb778871f9d509d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/postgres@sha256:eacfaa86b48323f4da3fa38d9afaab2cc8af3ee968a73ce40d9640db695d3a6e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/postgres@sha256:be94cea4ac030000fbf8ba1b9c7aff711b68626672dd4af39960273adb7caa61
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/postgres@sha256:2bf4d901a92887762432c319da8ae7e02818e6a2cb12f4080b596c8fd22cdc5c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/postgres@sha256:16cd12e947bf9582109829e5a6eed01dee6d342a2ec87866af954e157c2be005
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/postgres@sha256:145dffe7a04817d35d0bf8d758ca9083eb53d621526aef01311e210fcb82958f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/postgres@sha256:45d842b62572205ace4433b5630d531807bffc7db4f85e05e07a2b548446875f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/postgres@sha256:6e2a031c392616effa95eeb3dd0e964b22547a236f3a10fa34e100be48eb3741
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/postgres@sha256:8e645be3a043f9ed373236d702b04c90725033ffc32e15282973a4512bc64eb3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/postgres@sha256:011c5d4a974de737c5907905d133709d7c64c1bf25632257ad55a51f4dd4fde4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/postgres@sha256:733813b8b170738a680bf13d17b2dba2cf13d256c4a983a979f9c1f4d9df9281
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/postgres@sha256:41cdafd286d40bc21c6000f51e82ab9510639d5e24e761cd665815f19e7c1faa
SPDX SBOMhttps://spdx.dev/Documentdhi.io/postgres@sha256:7da7a190a12408bef19131e457265d88fde10f1506a76480ee752963d216b7af