Sign inSign up
Rundeck

dhi.io/rundeck

Rundeck 6.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

6-alpine-dev, 6-alpine3.24-dev, 6.2-alpine-dev, 6.2-alpine3.24-dev, 6.2.1-alpine-dev, 6.2.1-alpine3.24-dev

Index digest:

sha256:59552c96b65af55676959fd36e2480f2a11d1b5af233711e84057e8a3b255424

Manifest digest:

sha256:6606e2124d65518cbb2d9031c8661f648c39499208e55c059f088519e69a67f8

Size

260.71 MB

Last pushed

2 days ago

Vulnerabilities

0
4
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rundeck:6-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rundeck:6-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rundeck@sha256:5816d1e8bb16e51bf0e55c355d827eb2aef4ba7f3bab99c99e8437048a5f8ed1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rundeck@sha256:d16666b0c658fc649569e7ab3ada1b1625984dad97cf8b07670a1eb753b7f1a1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rundeck@sha256:7e82cb8254a7ceec26e1a965a317ff157771f7a89d510dbe0fc2ac2185678a2d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rundeck@sha256:7d4a6efe6e3ca3cda1a54d96439027e408897e86508e94ebee98f0dabfd4bd11
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rundeck@sha256:31c0642be50d3682df5ea6412b732836ea5a2f406e2d7f8419016e20798f2569
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rundeck@sha256:3a5050f0c65c560e98007c9cd450cffa3f50666dccf46ca47709dee211c55ede
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rundeck@sha256:a53e0f26cb9417c59d64eceb14a11db393041a1f43c8d627c3d7d470f4f7c084
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rundeck@sha256:326e18a3e20536944a8fd1469a74c9d67d53c3d44c13bb1f8a5e5f5ca07088a2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rundeck@sha256:df28f84604b4c014a3443150d83fcc9360fe2025ff21edc89276e988ec87dc53
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rundeck@sha256:6b1bbdf88ca6161cccdc9566bb94664070ec57818a3798e41a65db1c6ed10c38
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rundeck@sha256:9dff0eb1165879173490b22fc7c996a3a40da0726f61b2c68ac2b5c068d90579
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rundeck@sha256:7ec6465c8ab118fa2200cf17009826a04976176e2e1463f7152460abd7d96884
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rundeck@sha256:f6ee0a4cb268ebfbdc51bd10b7ac9cbeede4c1d1f8fde879a106d8e89e243672
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rundeck@sha256:cddc243714ab2f01020aba373dfc31797c12f68599904f5db041104b3e0d2812
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rundeck@sha256:d0ff31152273a5e5ec6dc62447dc153aafa6654c9406ce68ee0f95b333ec6f47