Sign inSign up
SmartBear MCP Server

dhi.io/smartbear-mcp

SmartBear MCP Server 0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

0-alpine-fips-dev, 0-alpine3.23-fips-dev, 0.41-alpine-fips-dev, 0.41-alpine3.23-fips-dev, 0.41.3-alpine-fips-dev, 0.41.3-alpine3.23-fips-dev

Index digest:

sha256:5525852f7f6e131bde5dc9eb39e4a8974e7f528fd3c634a94024fc2fe021f0b3

Manifest digest:

sha256:47d3c5f8972029bdbe0a2a05472b03332677b547dc8b48938dd739fc3af98c0f

Size

64.41 MB

Last pushed

2 days ago

Vulnerabilities

0
4
7
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/smartbear-mcp:0-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/smartbear-mcp:0-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/smartbear-mcp@sha256:983f6d424fc35f0d7aff31c2f64e0957ff0c94aafb1b8a2918189fe20ffaca9c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/smartbear-mcp@sha256:3fe58a62f5f137826a8da0519f54f5ab5d10ba6529d3b8df1a75cdfea1c504fd
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/smartbear-mcp@sha256:703280898ff92e852eba033c08e6183a7025175961dfea85951ffc1089db74ad
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/smartbear-mcp@sha256:b512c02a5d894481862d0fb7dde967a3553712c97651cf04ad48ed2490affb7d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/smartbear-mcp@sha256:0f0f03d8907c67631e2b219a7dd0650d5c705fc986eab162c47332709c20af2d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/smartbear-mcp@sha256:aef35111a937ed7983832de3e30040b26225fbb3c4bdf3182db72e15da22a80a
MCP server.json v1https://modelcontextprotocol.io/server.json/v1dhi.io/smartbear-mcp@sha256:aee8310c83154588d235e07ed6e46841137b8e768d2a019572c3ce4ded75fe2d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/smartbear-mcp@sha256:7893999b1f0ef0a72d337b439a156c6ee5ff5d316124be347cbd466c25dd0904
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/smartbear-mcp@sha256:93f519cd9555f5f72a3f7265b3f0db0cb9b1f027f7afa8c7cce7b5925304c6bd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/smartbear-mcp@sha256:5ab94c6532afb4c8478961fb522fec82166f68c60a7d0a03a74057ada58692d1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/smartbear-mcp@sha256:c674f6f3243aa211df1f5cc12cb856bee4dc7d45c3078bb8097019684e9d4474
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/smartbear-mcp@sha256:c392850bea7172a352217eea59eb8985b996881592a0e9b7b53dfedb599af62d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/smartbear-mcp@sha256:36960ce6f65ee759bd0c83d93364846c108c21b7abf50211af65a8db826182ee
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/smartbear-mcp@sha256:346c59f5172ba78a15885245ef9c331a44c3171f2e92d27da731f743477fc4d6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/smartbear-mcp@sha256:18d4b62e2d0f85a68dffeeac128ffae33140e3e45bf2360489c119f2360d028e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/smartbear-mcp@sha256:5a556e5da90bbedd7e5d283ead9aedefd3f5152ec780f7446280f133eb0d988b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/smartbear-mcp@sha256:ef9895451d1d5f96284b833dabf9902443e6a514fa951c2ed5c4774ae0e4ab53