Sign inSign up
Velero

dhi.io/velero

Velero 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.18-debian-dev, 1.18-debian13-dev, 1.18-dev, 1.18.4-debian-dev, 1.18.4-debian13-dev, 1.18.4-dev

Index digest:

sha256:f5d44013fba492e256446c32d8b3c81a6a7bfce46ae7dce65be1ecbfe29e5e97

Manifest digest:

sha256:ad652a603babfc21e045908b27a78a4bdc17689fd71fb5abf7a613d3541f8f70

Size

101.86 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
0
1
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/velero:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/velero:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/velero@sha256:b62ac55c7faf1f76be3048fb3c5c182e6fd8d5ecc344ad6682e6b7c5b6a31d2d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/velero@sha256:afa1c0460e55bad54289ae400d4051190dfce3ccbe17bbb1b92ef27f31251ff9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/velero@sha256:95617e7134ad7bf815125a285f2754fb31cb4db98850d9390e22d8285616b2f4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/velero@sha256:14c14a36acc2657206c4a12731ed9e85153de5dd8d7875aae67c6251566e0c85
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/velero@sha256:c5d00f7554dd85958d92e451009068b3bee480cd862bbf069192da8ebcc65b51
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/velero@sha256:fd20ead1a02e2a06db7c098559f2cf494ca8750b4ddfd7e52e8d7b73f1c4ac5b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/velero@sha256:80aad016fd2b4aa93fd14a029c865fa2e869e6ae1fe0150abb7ee2ba96ce5b85
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/velero@sha256:1db505da374070cdfb5f1d0e3791da1424e998014146aa3e698883d9622beb12
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/velero@sha256:3033312b25bcaac957f1c1302dbd4a89e701fad35bd4e50f3d19ce1305f4daf0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/velero@sha256:b8b8a7e5841e0d95abc1d5328b0083190dd0b182b9d4ed65b3463c970e804d66
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/velero@sha256:b09a30f0392a00b164cc935d5c8d3e054d0fa184a250d4a93c0a15588ae8e83d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/velero@sha256:0220513c6290758a19ea106b4c89d14f11dea10f7b9c1f369b3003ef3b653c6a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/velero@sha256:50ac9982b5d805d26b2be97af8070c689f808a541c9b2234751883ccb3e8ea60
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/velero@sha256:8a23858234f2a659f968297585afc3fe31947f6fdfe36cbe755cfef06e26862d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/velero@sha256:fa075333bb47aab033fd190ed8097e57fd10f3ba592aae53a688598247359163