dhi.io/rust
1-alpine3.23-sfw-ent-dev, 1.98-alpine3.23-sfw-ent-dev, 1.98.1-alpine3.23-sfw-ent-dev
sha256:b61c0024918b7f6f5ff8a302db1ecf7db41751360bcbf4c15b63a78d05a56a73
Manifest digest:sha256:a7378cb62cf2a5d6fe86f94d9f52488840c9491b8d4d13b69fdd9babd0c23c8b
Size
241.52 MB
Last pushed
6 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/rust:1-alpine3.23-sfw-ent-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/rust:1-alpine3.23-sfw-ent-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/rust@sha256:a36949c80cd72bcd52f71ee76bb7fc29d6ecfc4630c34905ade53e0890908575 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/rust@sha256:8915b487fd8717a1755cd6c2a640a542b30a1dad6206a526d11da249a51c7617 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/rust@sha256:7478685cee7e90852254751cd54f64c8529cf50de54db906558fde1265270514 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/rust@sha256:2e63ab6578c97b01c0033c1685421a6bc357588dbd0f70123a6566e6ce1b6e8a |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/rust@sha256:1b7df4279744fb55898cebaa2a2d2fe0a65142d0766ba3e0c5ccc9d5ae891a7d |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/rust@sha256:6c07b2ab2d04e3d124445c104f2e1828c5048c643e224f6898dd00aa5fb2e081 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/rust@sha256:0f8e87a3612b6fd7c8805317a52fa72ab20584ca714392ec06db7760cdb5f363 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/rust@sha256:3847aa3ed8b61d8effb192e0a87e0318fe6d489807a709d0d659b2f41e8ca13f |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/rust@sha256:4a2b0733c45e213627de20c17ccb718b3936f0727b0878f06488a82d3e34700c |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/rust@sha256:7a579809f87e72486f282d76f28f5d109bf05fbc7428a3dadec575f10a1d9044 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/rust@sha256:a3b07826a879aeff2917053d003a4b406d0a7b4647519be1dd010d8b0cc6e15b |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/rust@sha256:1afd7b154d01d9c1f15e36108f3c5b7bfbbfac7a2cf4fdeabe8849267cde1dd1 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/rust@sha256:afcf5d3d0bc88a1c53d97c4ad6591f1d1c585d4f0a26c8390c956d6f26ae9a39 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/rust@sha256:dc564e3ee6ea9c8d09641084c8eda09dc84c015591b8d6e2ef0289f977772e5f |