Sign inSign up
Python

dhi.io/python

Python 3.14.x / Socket Firewall Enterprise (sfw-ent, dev)

CIS
linux/amd64
alpine 3.24
Tags:

3-alpine-sfw-ent-dev, 3-alpine3.24-sfw-ent-dev, 3.14-alpine-sfw-ent-dev, 3.14-alpine3.24-sfw-ent-dev, 3.14.7-alpine-sfw-ent-dev, 3.14.7-alpine3.24-sfw-ent-dev

Index digest:

sha256:191edd5df071e35ff8a1c0bcb385ae6275716eb062dbede7e2f3457c0e934166

Manifest digest:

sha256:9ea76ff1ac0777583fd99ef6ad78134c460c8959270314e35eb80cf474d00a61

Size

119.63 MB

Last pushed

4 days ago

Vulnerabilities

0
0
2
0
0

Support

Active until Oct 2030

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/python:3-alpine-sfw-ent-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/python:3-alpine-sfw-ent-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/python@sha256:824f8734e89fcaf341eed653a3bec964caca06c04e152758d20e1178a7d06972
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/python@sha256:ac98c51afa01e9af51b95c70b4430069641655dad3481be0166aa87d83b24633
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/python@sha256:08a3ac34562959b552f12a21d9b4c994aa01891596cc0cf941cd814e513e5aba
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/python@sha256:11eae7783f652f6eae15dc494650851e536e6066c25af373144d08137ca9f61c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/python@sha256:813b67e837335a72c4173ef1da2e9257ad10ad77f69f2026773af14d2d5bdd99
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/python@sha256:1c77fc8ef82e1a3eb06a27ec5529cfb2d45ca1809bed25b1e1d3190acafb8162
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/python@sha256:2059738b800fc4b60f1bdfd262f6a6cb6af64fb47df7b37ebbebb0436e6d4c56
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/python@sha256:b5f79923f608e5b0318ea49d7a7adf6d5e315d36679e41b5a86afffbb43fc292
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/python@sha256:bd3ac6808790f6ff5fb5cbb92d3d36df3114d71d85baee9cf671d91abf7afc09
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/python@sha256:7f490d1e74e63d3649254f72cc4a0f3156fa1ebe8bd4e610a0fa8ca68bf5a756
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/python@sha256:b0bbc0d2588e033606e48e7f1f9460a4a1e8327ce5a93ac29d89e139d97bed1b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/python@sha256:0e9f528e2352b74e7490a56ff26221c266891a3a74df18f4cc4ada8503257ce4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/python@sha256:157db8cb93c840ca1d59f79670ac46d17a366c379ee3ef92fb6d9a661fa7c097
SPDX SBOMhttps://spdx.dev/Documentdhi.io/python@sha256:454bc88b5b746cab3b7f0d76e08ec5dacc72c22f754195751ab7aef6b46c5c86