Sign inSign up
Unleash

dhi.io/unleash

unleash 7.x

CIS
linux/amd64
debian 13
Tags:

7, 7-debian, 7-debian13, 7.6, 7.6-debian, 7.6-debian13, 7.6.5, 7.6.5-debian, 7.6.5-debian13

Index digest:

sha256:407566ca118ed12bd082a451f1a1565ae339aff0f6cc4f9778767c98fe89c0a8

Manifest digest:

sha256:28cc005ff786562c51f4059a65b9ccbb37c605fd34137abb720220e9ceea0ea3

Size

58.58 MB

Last pushed

24 hours ago

Vulnerabilities

0
2
6
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/unleash:7

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/unleash:7 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/unleash@sha256:68dbd8f37b9c34469d16e9dff0946bb37d8225d0586698a6611172576a885e41
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/unleash@sha256:65db0b5d440ced457423d77cd170e579748f555cc2ae02436575902f8ac31b34
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/unleash@sha256:75ff2cea6e3f5591704d5b404b67a8df3e3021976bd133787f4e96150181e26d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/unleash@sha256:e095addbb669f108749ff2c0b61b46776f8ce728eee7629a42f1b327ac928586
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/unleash@sha256:ec917e70fb3fe3a37b344144f3a21bece2338b57c84811d10aae5ab38358ee3c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/unleash@sha256:1eb8343ac05cb468784c1f8bc1376c7fde9dc71fde4d980445467712d1137a22
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/unleash@sha256:9f29ed4974e95751bf54c9eb97b45df1ea461bb75c4e2a8ddaef9cbf732445d6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/unleash@sha256:9f23119bc61a63a3477d1696b7182d1705314fa34e6668e3a4ac3c968f9f3eb7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/unleash@sha256:cd091d4a6d074929b7fa89653099a8f588fac5c771b5d1865cf8105677e46d2d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/unleash@sha256:211a41ed1b06271fc1ec601670f7e3caa23c3ca60bc780f0c84e5261e37fdea1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/unleash@sha256:9dff1fedfe082ab2f7ad46adb73fdc6a2477a0e6f6e67f3386618e4f39037946
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/unleash@sha256:bb2df0247fcbc815ea46bfc81485fe332cfa80dc2d2a3110ff7f9a9b35648181
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/unleash@sha256:d9e8b5203676e473241a41f4e7bc398e8c3b28b481eb8ed63d9148b072544e27
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/unleash@sha256:4d69de463be291a2b9c0b19e6919aacd43d6aea68e6b3c11c6e9c7e458b9ff58
SPDX SBOMhttps://spdx.dev/Documentdhi.io/unleash@sha256:f0f5e0b159d3aa9ca96d2ed581403de927a565688f51f45d5d924712cc3f1f0f