Sign inSign up
Strimzi Operator for Kafka

dhi.io/strimzi-operator

Strimzi Operator 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.2-debian-dev, 1.2-debian13-dev, 1.2-dev, 1.2.0-debian-dev, 1.2.0-debian13-dev, 1.2.0-dev

Index digest:

sha256:04e9d84870ae07e2515c9ec9f1cfca848ea875eafe9389d584ca280bffb0dba1

Manifest digest:

sha256:f71948e844a1194c15081b7f45d84fe808943996975ed6259e9f13e79d1bffba

Size

240.35 MB

Last pushed

17 hours ago

Vulnerabilities

0
5
2
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/strimzi-operator:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/strimzi-operator:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/strimzi-operator@sha256:f3fcd02e6fa57cfba37671c7b3631544e6a86076e2b244a424e2190f2c97a317
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/strimzi-operator@sha256:07347f8408aee374ea6c76c73ae192d3d885213d76db87af2afca54ccff15b8f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/strimzi-operator@sha256:ade8dda5100512b7fbfad4dede14f35459f4ec5fd35907cbc1201ce428501873
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/strimzi-operator@sha256:10a82d7a4267c4155ab2be1af6cbb1421695239f7c761eee8a45219a296b25c0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/strimzi-operator@sha256:8b04c0cdc2bb03f573be84b16e461588077deb3f8360ecc7e4dd730422156666
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/strimzi-operator@sha256:3a470ed18c8501dd53582d929c677a6f0711ef11fbd307c5cdb05e7506ac6b4f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/strimzi-operator@sha256:cb7a6676f94b04aed4976ba12e1e35da93d9108a61c43045cbd9305419a9d0aa
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/strimzi-operator@sha256:73295ea6d901afeef974e0cedbacc14c4c3edbaa890ff6e2c3df295a290fbdfc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/strimzi-operator@sha256:ae57f8ccd2a3a75f4593fd6f6cbb499f0bbe862ee517b13cc477193f2f8b19fd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/strimzi-operator@sha256:0193b9d32b96de2b3180a5b2403152b741ebc0939a6493c90a44d8d8f9aa7f80
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/strimzi-operator@sha256:a445677d09d974a4fb3321dcfea9090700ed3a249fc581c364972c5bd2fe2be8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/strimzi-operator@sha256:bfd1f7c612e89636ae1f5fa1d5effb853e66003c05b912ce4e727ae316d4f4c2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/strimzi-operator@sha256:015fde74fab0a78fe0ca4d21cd0e60bc67668afa67390dd7758ecded8598d193
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/strimzi-operator@sha256:8585bd5c0797686904b9c02d850115e1266ba020db1ba2472e4c17ef585227d7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/strimzi-operator@sha256:9dde88502f8bfb74f5b3ba4c3d2c2430bdf7f7b7a1086258ad784b304bf984f4