Sign inSign up
StackHawk MCP Server

dhi.io/stackhawk-mcp

StackHawk MCP Server 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.2, 1.2-debian, 1.2-debian13, 1.2.4, 1.2.4-debian, 1.2.4-debian13

Index digest:

sha256:2ba20f61e36f4e0839dfc12544f88d85eb2cc71914ddd8b9091cadaa3505b247

Manifest digest:

sha256:bf99239f65865143cfba2ae4dd4b12feaa228fea6d7c072c6f68230cadbe9b4e

Size

27.07 MB

Last pushed

12 hours ago

Vulnerabilities

0
1
1
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/stackhawk-mcp:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/stackhawk-mcp:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/stackhawk-mcp@sha256:46bff26f791db59d1425a6cadf390ae949ef036890176b1805ef6cd5d1d4bf9f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/stackhawk-mcp@sha256:3c4121ebdd77fcafe91dcc36ed25f5b2bccdbe04738c9de977c482f50482c4eb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/stackhawk-mcp@sha256:8f29b014ab42dd6b1dae1eee2952297f80ccf9331699686b854cdbc3b0d068aa
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/stackhawk-mcp@sha256:314e99696aaf0a942a6764031c3340accaf70e62483f65a026431205e4c71588
MCP server.json v1https://modelcontextprotocol.io/server.json/v1dhi.io/stackhawk-mcp@sha256:ebde3d0f98336817a217508c0c87e4f49547b98dd4143f3701c550fee8361977
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/stackhawk-mcp@sha256:62a485472fbe476f02406ecb16599fc9ba6139abff53b56222ae92238eacc6c9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/stackhawk-mcp@sha256:47ab23a1d858b409aac6de8012c25292e552e05f257b29c5ca6d89ee93bd0983
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/stackhawk-mcp@sha256:5d8d46da8e6a881e5ff887b6048bfde97ad17a860dcf36afa594817744f54f80
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/stackhawk-mcp@sha256:e4c66922e075535f024cdeca2bdbc80b57739967e8559294f01fec02ef544be2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/stackhawk-mcp@sha256:28b7a01138035e3e3b307f5744c943cf6b7433bd21b6446486950472eac193f5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/stackhawk-mcp@sha256:ef1e34e59e05710c3fb59933e0d0a97f98863025b821c8b03a633481a77d941a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/stackhawk-mcp@sha256:d85c6f380127d6c677443e48810ffcc31f835d81d131df15f87b68612cd071a0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/stackhawk-mcp@sha256:685519ff978661477eea3472d76795306ca4c9667f268cb8e2fefcc78464b578
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/stackhawk-mcp@sha256:fd9479ceaf2710465033b43ba661f4e2bddf46ca55396f041362d6b5d30b9513
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/stackhawk-mcp@sha256:c421985a77f3aaac7c45355212ec1ad6bcd08622caf0e8294f17d9ed7e899c2e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/stackhawk-mcp@sha256:ad4d2452e558e24350d305333b41b753643317f037f9ceced477125435c9effe