Sign inSign up
Sealed Secrets Controller

dhi.io/sealed-secrets-controller

Sealed Secrets 0.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.40-debian-dev, 0.40-debian13-dev, 0.40-dev, 0.40.0-debian-dev, 0.40.0-debian13-dev, 0.40.0-dev

Index digest:

sha256:a31a532c8c0f4d88f1c1d2ee7839305ef24d28b726d16d286429138243015ac1

Manifest digest:

sha256:5af06f779a6cd2dde0a38c0a84e836ac5e4dfd5d70cf44d143e4cc3a0e1affd3

Size

50.42 MB

Last pushed

13 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sealed-secrets-controller:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sealed-secrets-controller:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sealed-secrets-controller@sha256:6f58a7a7393e39caecc79539df51e30ff2f0c46629c4b95711ed243f1b64ea34
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sealed-secrets-controller@sha256:8e1308e3db009baa0314f852e3dc0c105760d48180e9b8424c68b3f00b7069a4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sealed-secrets-controller@sha256:163649660bd8bb9a223eba9511bed73424f3325f3baed969adb88ec0d448ebb9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sealed-secrets-controller@sha256:33ef5f8fe30486dac6f2823fa275563ff8e3e080327bcdca7bdfb890c4e723a6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sealed-secrets-controller@sha256:6286fd2304784406877b60f3facf2a8293dd5a082d894c26ce9e076fdf1f9243
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sealed-secrets-controller@sha256:62bb710fe7ec0ac87052cf6bb358b825200c486a0456c2b9e67c718b2c37dad0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sealed-secrets-controller@sha256:0eeeadb104641bd485dc4dc3a7b92d8d8f1f9bcc0ccf5817e27f8c09571f3a7f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sealed-secrets-controller@sha256:10f3b6d3bffddeaa94e86f1adf6d024e248282e859577874ff30c7d9890900f2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sealed-secrets-controller@sha256:8b7e1eccd258acb2dd777779094b2fd1609b40ec4761fd8eb9ba05e3ce5e55e3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sealed-secrets-controller@sha256:5f271bf5e8bf81a0da828ed7945063b11a6047117d5943fd82730b0333893f0d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sealed-secrets-controller@sha256:4abef38c650cd570121a9e06b4c197540e53eb6b4d48a3934d3e9a93d8f9d55b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sealed-secrets-controller@sha256:9fea041cfcb344a5444d2e4961b9d1a05fc3eb94c2956f89f10cb2117dac8bc0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sealed-secrets-controller@sha256:37dee98593a89e75b7a11a3cc15f8f2ec2797fa76c92ecf1c7fdf348726991f0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sealed-secrets-controller@sha256:6e25c6114f5e407f7faf77ab0cc5aefdb57c4e0a47f6d5f672046119246b019b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sealed-secrets-controller@sha256:e664284757bebe0aeefe5e38c62042d94e54f78345e2151042ad045d4f86e1e3