Sign inSign up
Valkey Bundle

dhi.io/valkey-bundle

Valkey Bundle 9.1.x (dev)

CIS
linux/amd64
debian 13
Tags:

9-debian-dev, 9-debian13-dev, 9-dev, 9.1-debian-dev, 9.1-debian13-dev, 9.1-dev, 9.1.2-debian-dev, 9.1.2-debian13-dev, 9.1.2-dev

Index digest:

sha256:69726c4a2822fc50c09c23e626b2be0ace6166258f5760bbdbaaae3b370f599f

Manifest digest:

sha256:71fcdfd4224e105c711eb4493976d96d04febb41b896cd80b1bd9f024f378ca7

Size

77.07 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/valkey-bundle:9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/valkey-bundle:9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/valkey-bundle@sha256:883f708bd9cbe2b50542a6dc32012dd68b84008879de190eb3fe9b8cee63478b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/valkey-bundle@sha256:f3a62295d7e8b5bec16966a9a8e213966a4524889a2f77b1c2a33a292089ec6f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/valkey-bundle@sha256:b588f388fdd9f48d09005f5d2e2993d9ffc894126a41ee8ed8b6827a75a5bd2e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/valkey-bundle@sha256:2b234917e29a9a4df4536c75a10b815ae23d548008303658c9efb6a30f04ccf2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/valkey-bundle@sha256:d9c83070e76181a92d97a15e240dfebca5eeb5335f76b7500634d7f42e501a1c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/valkey-bundle@sha256:1dbbefe77e1a628ec1ec720053d802c1206224144e8871e9c5ea77e6711c45c7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/valkey-bundle@sha256:544e23606733b1a9d9e9b5e547736bda96450a5a601f9661d6109ca3c17bf104
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/valkey-bundle@sha256:4657273fe42d8a137ff1769db4d685a331a1ad16e338fa679595ee3845d06b9c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/valkey-bundle@sha256:87429610e514c05e10b122342e6aef13678945439ff8bc7161bf56362f46adc6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/valkey-bundle@sha256:8eb67e80da47e785220da354074970a54e8a1c8a7662b0a9c92d9af4010196c5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/valkey-bundle@sha256:f2b75644b41f0686b9fc28471f7ef1ca6cfcae22c6f370ecb155a6fb3e849bca
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/valkey-bundle@sha256:b674edae7be87ed7b86b23984edd276a9dead7c30ce5a89c16d4de9543bce3a4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/valkey-bundle@sha256:b23fb401ebb15ace4a95a9d2f604fdbd762be9de232fb7ca16022426402827db
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/valkey-bundle@sha256:510b26ba3343e7712792568650d4a75aa19f7de98cfc0b9a2c0480fb100762f4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/valkey-bundle@sha256:fcfaf305a458ea821a9eb7e343c7ad93c4164a76f612c7063e4ea211ebc0207a