dhi.io/smartbear-mcp
0-alpine-fips-dev, 0-alpine3.23-fips-dev, 0.41-alpine-fips-dev, 0.41-alpine3.23-fips-dev, 0.41.3-alpine-fips-dev, 0.41.3-alpine3.23-fips-dev
sha256:5525852f7f6e131bde5dc9eb39e4a8974e7f528fd3c634a94024fc2fe021f0b3
Manifest digest:sha256:47d3c5f8972029bdbe0a2a05472b03332677b547dc8b48938dd739fc3af98c0f
Size
64.41 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/smartbear-mcp:0-alpine-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/smartbear-mcp:0-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/smartbear-mcp@sha256:983f6d424fc35f0d7aff31c2f64e0957ff0c94aafb1b8a2918189fe20ffaca9c |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/smartbear-mcp@sha256:3fe58a62f5f137826a8da0519f54f5ab5d10ba6529d3b8df1a75cdfea1c504fd |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/smartbear-mcp@sha256:703280898ff92e852eba033c08e6183a7025175961dfea85951ffc1089db74ad |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/smartbear-mcp@sha256:b512c02a5d894481862d0fb7dde967a3553712c97651cf04ad48ed2490affb7d |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/smartbear-mcp@sha256:0f0f03d8907c67631e2b219a7dd0650d5c705fc986eab162c47332709c20af2d |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/smartbear-mcp@sha256:aef35111a937ed7983832de3e30040b26225fbb3c4bdf3182db72e15da22a80a |
| MCP server.json v1 | https://modelcontextprotocol.io/server.json/v1 | dhi.io/smartbear-mcp@sha256:aee8310c83154588d235e07ed6e46841137b8e768d2a019572c3ce4ded75fe2d |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/smartbear-mcp@sha256:7893999b1f0ef0a72d337b439a156c6ee5ff5d316124be347cbd466c25dd0904 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/smartbear-mcp@sha256:93f519cd9555f5f72a3f7265b3f0db0cb9b1f027f7afa8c7cce7b5925304c6bd |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/smartbear-mcp@sha256:5ab94c6532afb4c8478961fb522fec82166f68c60a7d0a03a74057ada58692d1 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/smartbear-mcp@sha256:c674f6f3243aa211df1f5cc12cb856bee4dc7d45c3078bb8097019684e9d4474 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/smartbear-mcp@sha256:c392850bea7172a352217eea59eb8985b996881592a0e9b7b53dfedb599af62d |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/smartbear-mcp@sha256:36960ce6f65ee759bd0c83d93364846c108c21b7abf50211af65a8db826182ee |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/smartbear-mcp@sha256:346c59f5172ba78a15885245ef9c331a44c3171f2e92d27da731f743477fc4d6 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/smartbear-mcp@sha256:18d4b62e2d0f85a68dffeeac128ffae33140e3e45bf2360489c119f2360d028e |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/smartbear-mcp@sha256:5a556e5da90bbedd7e5d283ead9aedefd3f5152ec780f7446280f133eb0d988b |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/smartbear-mcp@sha256:ef9895451d1d5f96284b833dabf9902443e6a514fa951c2ed5c4774ae0e4ab53 |