Sign inSign up
Snapshot Controller

dhi.io/snapshot-controller

Snapshot Controller 8.x (dev)

CIS
linux/amd64
debian 13
Tags:

8-debian-dev, 8-debian13-dev, 8-dev, 8.6-debian-dev, 8.6-debian13-dev, 8.6-dev, 8.6.0-debian-dev, 8.6.0-debian13-dev, 8.6.0-dev

Index digest:

sha256:6d3525bf91e5cdcdcd85f389b0210255a70fbc5f0b1d2ecf3f1c3d3929b1f730

Manifest digest:

sha256:63efeb0f7dddfe5071d15ecdd337bfb07628d973842470e16afed72216d5b13a

Size

56.13 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/snapshot-controller:8-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/snapshot-controller:8-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/snapshot-controller@sha256:cb9fbf5b49fd48150f125a8b9612baba1ef39213271b19c1f43c9fbc41a79621
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/snapshot-controller@sha256:23268498235cca5eec19e34fbd588082f673fc33f8dc8f81637e52543ceb9291
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/snapshot-controller@sha256:3cf6375795c494972ddd91fe9b882e16b8fb65fd851714dedd1fd04d0d5d2eb3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/snapshot-controller@sha256:7044e75d4e3942daf8fe3cb94d8bde774551e7d7dfc9f257ad9495d3f2ba4b7c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/snapshot-controller@sha256:3bf3a6138aaf3334aef5d157b8cbd664f8bd75596dc364e6218802435598e9e4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/snapshot-controller@sha256:f2bdf3f82c22a867e670d424df37aca0a9138a0735652bd74b78ba2ee7b12cbd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/snapshot-controller@sha256:323f2b15ae5d19f3fdb41f2aa9ef971dd65a5961c0b25fee09f4012fb9d9cb63
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/snapshot-controller@sha256:f12d587ceeb7eef7909ddacdb2988fc4fe6fe973cae46adc9f55827fe39f37b6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/snapshot-controller@sha256:b7e2b6866bcdadd783e32154735303353bb720e0566108dcbd5dc1d080bc3fb1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/snapshot-controller@sha256:0bc5dc321c17a49aa80a65a53db66df4cbaf880541f3acfff9f80b4147257a5c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/snapshot-controller@sha256:e96860345e74f4746314f7e2c2e5cdd258c88001395097e6707a92e9e6e44174
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/snapshot-controller@sha256:3dba854d42ab8d0c44582fa79954b398f49207f566a738210f8bf0ebba23a110
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/snapshot-controller@sha256:eb6b88284cb377b71110441ab7a0e8f0538c59f9dcb8cd165a986fa2ba86cd80
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/snapshot-controller@sha256:51b9dfbc57c4b8f0be9f16ffddb448af7bf5fb1f7781ff62e9a931593609134a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/snapshot-controller@sha256:912cc8963894da929871873fb00d9d7514fc02e598e2ab85e182ea8b552c68a1