dhi.io/valkey-operator
0-debian-fips-dev, 0-debian13-fips-dev, 0-fips-dev, 0.6-debian-fips-dev, 0.6-debian13-fips-dev, 0.6-fips-dev, 0.6.0-debian-fips-dev, 0.6.0-debian13-fips-dev, 0.6.0-fips-dev
sha256:68726c359fd3f061fbdd7fa239ddba8946d4f8183157c90b18911661eada69eb
Manifest digest:sha256:5b1f680ac27699ad2a0fe0231ddc8a9dedc0f4c9dfac31e6cb935175cccb88cb
Size
55.80 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/valkey-operator:0-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/valkey-operator:0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/valkey-operator@sha256:b4a13d982ab9761d70db2673bb71eb5052e2b5ee81ca207027f2a5c71399a550 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/valkey-operator@sha256:12d67f4eff7f395330a9c29d70e3da7b6053186b31ad26e6da17b1789a004fbd |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/valkey-operator@sha256:369e5172367999375eb31cdfdb477e561aa2439040becbd0b5069447bdd572f7 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/valkey-operator@sha256:8f88bd6037ff334be375a65f88a14c40585d38b72c9994111684fde72111eea5 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/valkey-operator@sha256:63b832e1510bd83dbe1c4b4b42198aa4c920ce3e43a9a02288053c931f92f2dc |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/valkey-operator@sha256:3b7463b16f3f35b1d8fa2e8c22c97f59b21eb9f812243468abbbe5695ca11b24 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/valkey-operator@sha256:e7aca019dcd7b1cb29684aa7e3810a2178f400d8f29ff94986ace2b99fea4ad7 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/valkey-operator@sha256:6f406f3fc74d23b5cc7c3b328f88766f3e32e11e8b441d2cf94164f5bfe1507b |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/valkey-operator@sha256:68ee66479d3399a2beef23a671cf0795250cd466372e6ea6734814f7c0065869 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/valkey-operator@sha256:cf809cf435f421f5aec632d24f6c80b471fda6c510f1ee93ce6dc62b0ba91a6f |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/valkey-operator@sha256:1d21a75c96b33f02d820fe783cd80be41d117ac7c599c38c3030f5934c339d13 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/valkey-operator@sha256:25ff3ffd3b2d687009972206c5d28cf8d9dc328a254180c8210c5f208fbd27c1 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/valkey-operator@sha256:c7eda72ddc6335c25443855f49fa626524a80e9585b14fdbf0a60d6c1c99ac01 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/valkey-operator@sha256:60625cd955355193b94349a53c4d2a556c4d20991e4bffb295ed8a52f9bbee05 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/valkey-operator@sha256:fb28389ef1ba4e6787a861a91776bc749510fd522fb47ff5eda3f2f809f5ebcb |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/valkey-operator@sha256:d5cf0569079ab804136e5d5a2b84fc76f09f40c5fa3734b2600c4a37073925af |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/valkey-operator@sha256:d4bc0c2ed51c9fc384058c1fb93150d2efe20d4d275bb26dd64f8d2fe89ef424 |