dhi.io/unleash
7, 7-debian, 7-debian13, 7.6, 7.6-debian, 7.6-debian13, 7.6.5, 7.6.5-debian, 7.6.5-debian13
sha256:063a58a445969dacc825512557e105d6bbad4984aafd25076e9a4bb2238ad8ef
Manifest digest:sha256:dad8499580f8cd3848c9d3353aabf0910caa0dd664a42def7960c0968f26b11c
Size
58.78 MB
Last pushed
3 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/unleash:72. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/unleash:7 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/unleash@sha256:c0785523379d787fb79a4f49f9b484ce33a1ff5e133433cf6ee98ed266b00360 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/unleash@sha256:ff879a05ddbfc782d151ac03373e0fc5e1ea8ed82c566622a58065b919b162c7 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/unleash@sha256:678885096b4bb39c40ec2a622c2982a83e5090d727ab7d8b8bc76af81b75456f |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/unleash@sha256:81ef85677e8e8961f4a75b93ce5856b4083aed4eefaf17ba403c2b131486521f |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/unleash@sha256:a5bc4a6f054ec5f3fd797a470cb9885c26f61d5b6e3cab1ecd0477ae4aa5feac |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/unleash@sha256:ced8105cf60b0f96d939c1227bced89af3ed115648f689b61a8213d917b6cad1 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/unleash@sha256:94ce0fd9230b4f0f0a7bfe8722d1a88f026c9c470254c558e1730cbe82f613b9 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/unleash@sha256:d306d7f38e001948528a29ae457746e810e6c742da2867d05ddb74db6b4dd015 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/unleash@sha256:f184a60b27c952124a2c87d0d49f02a785a3c5d80452a3b0cc049846979e9ca6 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/unleash@sha256:d8f0e6dd9ba14b0f6ca6ee7660d2258ae664a56080457814de460d828e5e7134 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/unleash@sha256:687c5664371bd70889a6d6db5e4f2ac7b8c3d89a327120a2b27108179bf56577 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/unleash@sha256:70267a2ba714988dcbba8f958216a6923f5ab3d01366054042217a4993cd2bda |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/unleash@sha256:332f83d10ddfe8eb8b513aecae7b99abd79d3e7598811474a4e4c64c42ac0a02 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/unleash@sha256:9ac6445322aabc401e1c8a28bac6a546583d91f8a7b64ef28c6216d11c830a59 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/unleash@sha256:d24ee67598bf8f297d56a2c07846d97862a5c50ce031af9c4f9fcbc3edb7b7ac |