Sign inSign up
Sealed Secrets Controller

dhi.io/sealed-secrets-controller

Sealed Secrets 0.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.40-debian-dev, 0.40-debian13-dev, 0.40-dev, 0.40.0-debian-dev, 0.40.0-debian13-dev, 0.40.0-dev

Index digest:

sha256:8e82ad649a8e9b8b1cf3123b8988c34dfaa24beb360b8c0efe01db37d8f6a971

Manifest digest:

sha256:2d51bc748e15938046b150472b843e67515cf1b54b2be21a81dedc401f029694

Size

50.41 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sealed-secrets-controller:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sealed-secrets-controller:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sealed-secrets-controller@sha256:8f88db13fe9c72ff30dbdfb23c33aad038c5a50dfec661aae52fc66a029d1fec
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sealed-secrets-controller@sha256:ab11258451a3038932f2f43b93f513641f5c52ad37dad5508668557ebf921e98
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sealed-secrets-controller@sha256:4b5d291df76e889cfc953237637be3b3c44778075e497fd933a6c5aeefd36c60
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sealed-secrets-controller@sha256:e9d7e4005fce041d41563fa3e313b48af6b8d7cbeee4016e4bd40d9b1ca07473
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sealed-secrets-controller@sha256:7f1416092e8e4f8fdd51fc2e5cbced9074d800498a5057b3b00ede2b98d8f424
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sealed-secrets-controller@sha256:e736f03fe13ca81625b2eda7ecd5624b16f954379d39b7d5518a5fc7fd09f319
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sealed-secrets-controller@sha256:de5b820bbb72f5b1d5a01152dfe3a79aacbe406e836701c991f9254189145b18
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sealed-secrets-controller@sha256:16885d4598be33846cbcd9a66243077a114cd341798237af81e53b3edf86c5c3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sealed-secrets-controller@sha256:b91816e7a08cf9466fc38238d2cac76921849a47ecedffb73442a7830ab0f4d5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sealed-secrets-controller@sha256:717a0a4323679c696ff420880d2fab513d5056665228a430be6a370849ff6e50
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sealed-secrets-controller@sha256:040bb45a98c9a453f12e396f2446d60b2a9d8eedb4a2dad48cb86436ed7ec1b7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sealed-secrets-controller@sha256:32fc240139f0355c95629d333dbfa459dd313661af6093ae709b1bd30e8ad302
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sealed-secrets-controller@sha256:63db7ab448247e8519b570462a2469387ac538a33f9a1cc2d3c4d4f490a51d9c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sealed-secrets-controller@sha256:99eee3304bee8953bb31de91af600c41a98728915ef4648348ba7bc532ff0c6f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sealed-secrets-controller@sha256:8459e4effb31b93b7224835b9b594ba339a662b4b3b75ce5c6cad48c926f5183