Sign inSign up
API Declarative CLI (ADC)

dhi.io/adc

API Declarative CLI 0.x

CIS
linux/amd64
debian 13
Tags:

0, 0-debian, 0-debian13, 0.30, 0.30-debian, 0.30-debian13, 0.30.5, 0.30.5-debian, 0.30.5-debian13

Index digest:

sha256:94adb2726dc9792d87f4c3ce2ee9d2892123f4a040d4d24fb32dee703e798e89

Manifest digest:

sha256:6a891572b03141e89b48f2afdad0815a54aae5f28115ac8211acd4c392b84254

Size

41.88 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/adc:0

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/adc:0 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/adc@sha256:0c6e440afb7ee36360ec8713df0f213aa489b6ee1fc18787d8a6f4b4b5c7be75
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/adc@sha256:c91eedcf8596b9a1af1d3b9d8cef74d01dd5e7986694876472a7e68ca0b8a847
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/adc@sha256:5e49899e03b0f9ed498128c63179e51337fafac82e76abcde1ac0f135d977eeb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/adc@sha256:822e6fd2e1141248968748a4cd5d0823f1331aa753446783aba77faea049db9b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/adc@sha256:7776922dd6a8b34c10dde31bc3fe642934c2a2949105ca5cd39e31133d3cc48c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/adc@sha256:d0eb8aebda62ed4f7cf7f756e214ca856dfd6267aeb7e005025c69044209527d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/adc@sha256:e5171d81c4f1490f2fdc3716521eafef9d77266f91f40080d884fa799afa5ed5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/adc@sha256:7623ee7e57ce86f2f2c38ad85cd0184b1bc3b811f7664fac60eb45b314c78abd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/adc@sha256:3678e275e92573d05f43812fe06e68f2be4c32730204246bbaa9535ab2dc38d6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/adc@sha256:4d0427c1e96e66522c795c8135f2dfde4f8d6c88ae3dabab2d218292eb2a9905
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/adc@sha256:e380dbc62142865b5935a1798d1fd7f1cce039af36a6b9da7ac7a26b25f49c13
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/adc@sha256:7d0d4b59f2ba97433be25e1456510fbb8eab5017d3d6dc283f725391cfb58488
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/adc@sha256:c30bc45cef10b6f307cb2c0448b3577c3165e471c9a52db576e229cfe62b4584
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/adc@sha256:67c5f7cc21cd0167efe73ec5ba31c981d49c2f6685df2c8daa73fa191cdcb82b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/adc@sha256:1bc85392def44f0b4ea0388288797716c4965aac0d0fcedac0b59c659417e9cd