Sign inSign up
PostgreSQL

dhi.io/postgres

PostgreSQL 15.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

15-alpine-dev, 15-alpine3.24-dev, 15.19-alpine-dev, 15.19-alpine3.24-dev

Index digest:

sha256:41e495ab3d29ae919ed695e38e8a09639ca9b92d7111296d9f4ae4c94be1c9ed

Manifest digest:

sha256:8de01b2eeb4122a587dabca21b6c85cca971c11b94aed1c728ff370791a54317

Size

133.63 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/postgres:15-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/postgres:15-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/postgres@sha256:e3835808de4fdbb510a0b7f82ff7fb1fa04acb6875ba786ea3d55ca0154c8260
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/postgres@sha256:eeecb1848a7d3b336e41441267fdff5b6411029a7d221dd108b6992ae7562991
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/postgres@sha256:c76b570f48bb2846aba1e6e3cac38e858a7951d4a97014c84cbbc519cd330f22
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/postgres@sha256:8d6639cc0dd2d90abc201ac504ac5e36db04ea1827310ae807248817fc6455fe
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/postgres@sha256:ed0b37f550a0f401fc750d83485fe4f40179ae82f2c6cef9eb586c157062a650
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/postgres@sha256:b75f4f4a927a95205ed4cc3c3cca5ea80f535e7bb4beed75e3e8eeaf4d61bf56
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/postgres@sha256:ababd34ecbcdd1a79703f84d0ed6eac283cc8394426867bd32cd9c4dbf497d02
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/postgres@sha256:18fb54f7bda7bba4023762d6ca33c7d4e3fefe1df853be77d961a4f6ab615f88
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/postgres@sha256:49b31f468b5fccb2c9223c8a27bff815e0e605b99a17fb66331d39bcde1ab574
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/postgres@sha256:918d09a2f176440141bc8023b4a01fdc41f89d10895d1b4ad6b9dc1c09f036eb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/postgres@sha256:8587b9943750fab207850b258919fbb867a46b7f04aee981d8a62ab93ee68a9e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/postgres@sha256:406b1165bbf62f9570dcdbbbc8f63b58a1a56bf2ac00c87fb40af78510341017
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/postgres@sha256:0ead8ae5b06e80f8c6b5fbc869e6b3df823b8d81cc365fea96f9391f7f988dd6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/postgres@sha256:bbcbda359e8483f1ed27dae0a9a24a784f57ec2bd2324c66cf1a3fa9d2e4a9be