dhi.io/registration-operator
1, 1-debian, 1-debian13, 1.3, 1.3-debian, 1.3-debian13, 1.3.1, 1.3.1-debian, 1.3.1-debian13
sha256:32aa3bcfe54ee293aecb266f9e4164d6813906b655c45b4be1ca7452069f4e8c
Manifest digest:sha256:4c9aec9400cac13befc28724f4fd98e200d88d0e54d8d38b87170bc56d406a03
Size
23.70 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/registration-operator:12. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/registration-operator:1 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/registration-operator@sha256:5a3821e8594b01bee092697ac110128037fe8409f03ce6dff6889fc6ac09188b |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/registration-operator@sha256:c281d37dc10c2b1e29ddebc18a7d0ce8c938bf6e6810b27f43fd27bab465032d |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/registration-operator@sha256:d1fec84d349a1ff7f07900e577d1c47dbfef5aba58824bcab21cd0b31f8cf6c2 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/registration-operator@sha256:1897c1f62dffd126c9cb99f64fd52e0c5fe9942ec949c754a4f52e5cb7effe10 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/registration-operator@sha256:12fdfb4caf7b04e526a1d0119d9d62bc7ba9ce67fc8e0040bc94efe48486affd |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/registration-operator@sha256:8752981ebc23dfbe12d895fd43f8e90cd7074c9f3fd06e1e745569db7730538b |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/registration-operator@sha256:e0acd9580ce4ba290069995e193a35bcfbad3937b6fd3407ef6ea68d1f994724 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/registration-operator@sha256:0eec57b0229e9c139ceb2144d9e0cb56621e999a9c7b4be19ff55103824acdfe |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/registration-operator@sha256:f51f6ecee785bb8d7143ebab9a51cb8e4048adaf6abddc6a4e105c55d6b3131a |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/registration-operator@sha256:c94dd6981957550e4e87619df7fdd27c6c78afedc0c19ed947c4e6d31323e35a |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/registration-operator@sha256:680c440825a6d1681c84e2b9aac60290c25d06d9dde67b3ed9967fe132db79ea |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/registration-operator@sha256:6ad03dfadc1cff92f8f169552145ec91bdf3474a9a519844f7f8087ef3bff71d |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/registration-operator@sha256:0796ddd04c4e27dc0f2c4db83493527280105d898cd33db760e1f9f0298f83f3 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/registration-operator@sha256:81c9ad5865d888603f72693743afa2245291d3c42afd84ae69c9b53e37e09db4 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/registration-operator@sha256:68e86126d2e237335196f52adeea2ff1359f02ce14db6b05e7f36c47d9b4d1cd |