Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.28.x

CIS
linux/amd64
debian 13
Tags:

1.28, 1.28-debian, 1.28-debian13, 1.28.4, 1.28.4-cli-1.9.1, 1.28.4-cli-1.9.1-debian, 1.28.4-cli-1.9.1-debian13, 1.28.4-debian, 1.28.4-debian13

Index digest:

sha256:e0dd7714655b6fa2fce503250fb32a2963d87186f6344f05cde98373550f19c1

Manifest digest:

sha256:f3a13f59f101c496b7eae22f2592a2edd6eb5c867af45ef4a72531d40830a2e8

Size

111.98 MB

Last pushed

3 days ago

Vulnerabilities

0
2
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.28

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.28 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:09e681a1a8493b7cb75af8f422d6f6897c81817746f2bcd8618cb04fc5ab0e57
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:e52c2e1ee0879c8654779f1cac9f1b28d2f05ef6a7c36b2c6adba3f0c63337ad
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:19576a8bf41329e45b1a39d554207c7f0fd96500372a3ecba18877d388af4c07
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:493da895c5614c0451557c50480abca1afd0cc8902e5d9d4b3b59c87b4eef00c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:05938bd5d48d0789ed6a57d42b63db45f918b578e5902d9abb1d299af103e255
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:a34b1812247a35e5008bcdeed0252f6428a2fd3a006be8a2c826991d15d57bd5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:fb00939e0297cbdc0277b8d0dad302cc91bff0f3eabb699bb74e40bc6b14c23b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:00ceef833958344c9ff690e9d298e4b2063c51b532ff8440718442f88a6c66a9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:82d20e7ec747cd82f6c93b5be027cc024aee20f67def8bf364a8672318c9ea68
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:0886af048267e38f61353d3c75bd7c408d2c1d31bbb48451c766c92178935068
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:da886b4bb249918b9446d60388cd78029182561fcc124bdf8b812e0cc52635ff
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:69e1aa5bf7814d527ec112a8f4ccff2fc6f24efa9e499c7d4864c649516ffea0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:f4d6491ce6f820064a9baba68b618236bb1b64f59ace453318b47d49887ea9dd
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:66f0cb009717e42c938cef4d876b7e5053d9609bad15aad244687c20041d68bb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:f91e801e1c22f5d202de308bad7ba2e83f4fd9a961d37bf94a13b4427b26d4eb