Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.30.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.30-debian-dev, 1.30-debian13-dev, 1.30-dev, 1.30.7-debian-dev, 1.30.7-debian13-dev, 1.30.7-dev

Index digest:

sha256:4dbf0510423942a020fd0513abc79171c16543a4dd6edb5710a591269c9a68ee

Manifest digest:

sha256:6ef8cca7836c50348a886ab79daf535b8e0e4fa8ccf33a698825641ab36c2cf1

Size

72.55 MB

Last pushed

15 hours ago

Vulnerabilities

0
3
0
14
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.30-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.30-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:a9b1ba63881639a4bbabb91e43b014a624c389637cdedf54130771a30740390e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:b79e7f9b1d3ae22b69067afcf7ab5572b1e160c136e2e7a20545c4107c4a950f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:0909cff7b216730378dbede999044aea9827f28801ab4facaeb52c6965ef247f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:5f6c0cd6d7b9d9f13aff6c3f88dfad52fbe752271bbfd7cc5f25b5045db5ac68
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:9e18035d446bb3e094b471b5d32309b823f6a704fdffd7d5673941db43ca7367
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:6aee569def83408a600e7a4144331bbc2fd7307ca09cbffcb6f8dbead121c34b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:7c38a0d939310139bd2e9b90d763192946faba7b778d4ba7b910819708dce423
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:834fba5945d3d761a75884facbe162980ed87e56e699a8661e44d0a04c4c8bab
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:9112d92e016d20991f32746c7d87bd2dea54a8272b47abd7d0bce85fa69562e7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:49456417d4e0cd8addbcbeb4034d69b78ec371e0dd303dd89a9bdab5abfb9cb5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:00fb6e8509da2010f42d68c560e45ac6ddeca3ad080fadc7e3fb39ceebfb846c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:87b6b4e16ddd2e006fd148f339c1e26f62d28642b9be664e60469a4bfac193be
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:cc13d3b65b0c23729655fa753ba190c4401b968c352d8bf927c69778f6fe2f7c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:7923e1dbe0a49c692567bc8a657d1caaca5b4f487eaba28bbcaee27e9c20ccb9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:07243a1b7411e8f174d226ce2a88fc0b55ec2e34c352f9151088d62139353860