dhi.io/sbx-templates
opencode, opencode-1, opencode-1.18, opencode-1.18.32
sha256:2ee964dc1e2a2b52544afd70154f3b51d74def4029aa76941c6e6e6c275ddc30
Manifest digest:sha256:d79442920fa99a1afc8aae1e9e19a91903c9316f5f78bcb50ed45aa5bdc8441e
Size
483.77 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/sbx-templates:opencode2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/sbx-templates:opencode --predicate-type https://slsa.dev/provenance/v0.2 --verify