Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.31.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.31-debian-dev, 1.31-debian13-dev, 1.31-dev, 1.31.3-debian-dev, 1.31.3-debian13-dev, 1.31.3-dev

Index digest:

sha256:c69f850214ed83743be3f96f8fa339ec753666682bcca57293105f516707e3df

Manifest digest:

sha256:f03f4ec6744d9385a4f1e6feef5675fa73a3d41c3b739fccc45b71c0fa7cef76

Size

90.12 MB

Last pushed

7 hours ago

Vulnerabilities

0
3
0
14
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.31-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.31-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:0fcfbed29b2f514e5ff4defb56e1f6699601cf4909e1a38951d634fbe1043aee
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:f241fd4c46237e0bef43e6b90347c610550ffe63118b722510ae1e7dfb9a172a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:d5eee11d63816dbb15142ab184f6834801e2e427fd7552114c27e21d458777eb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:da26bacc0ef34a4a5ba2ed5e455a9e68562767a1394bfc9a2643172d231c74ee
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:fd492f4cf2d66627b311fd884f29a75ee06fedfe5abd3f01724362264d1f0751
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:96125ac44a3d903e776b3f0ea0db04216b4d4396aa2f62c39c5a9e67cf473840
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:5f5eb5a1f08e117fa3304f17cb06c8e56ab4ebbbf2cd756b09f2fe48b11c92f9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:1365455bc88c787c2cf9a6c04c61639366a96d2d11c45579dc8775e73d591792
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:a48c33566073b8d13f51ec1b7af79fbdfd7fc97e4f07cf2160d0d2ffaf14d886
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:a22019e10a9b3a3362f26a04394b9ced5d9055baf6b8a42ab9ff8de1e34435b0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:96c98a580bf64561f1bb777324bb1529935ff9ef177eac87df3678ee23970faa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:dc3aab32bf1a8428471bf9ec208e56ce6637b0adab5b5bf0acf1dbe7e54aa724
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:49fea3cad08b391a8b17b21450f5f0b152767d6c5a01a6d07c7281334ef7d9dd
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:4c98ad3c7823d38acbd73a938320d430d66cd2d3c5e965f435012c7d788a0984
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:9ba7a6c151f3534faed311b1ea8a523fd066825ac92098be5cf3860995fb3a69