dhi.io/calico-whisker
3-debian-dev, 3-debian13-dev, 3-dev, 3.32-debian-dev, 3.32-debian13-dev, 3.32-dev, 3.32.2-debian-dev, 3.32.2-debian13-dev, 3.32.2-dev
sha256:73bebfbd2fedb8ad21d280598fc71a0ffcc289f9857910f6c8ebc8027e367bc0
Manifest digest:sha256:3d7b5fe41bac52579c6767e3c6fe55b59b87737bebeac08d98b42bd7c27cb20a
Size
24.54 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-whisker:3-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-whisker:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-whisker@sha256:2db15560a0dfe8f1d3fc9fcd4e5eed76f2066fd359b18cb5b98ba241fc573cbd |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-whisker@sha256:10fc5dcaca1205b9250a1d05c336ce607523912d0c3116cdf30e22cb01931b20 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-whisker@sha256:daab8781eb66f664b179b894501cde8fff24f49a5dfe488f333e7087ce74bf48 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-whisker@sha256:bdb0480bfb359b1cf44160aa018fc93554e2d7da10f17a8f7acd16eebb6afc17 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-whisker@sha256:7ea24086168cf49de4f7974518c0bc0972637ec38f84553a88cf1c4820242944 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-whisker@sha256:3ba6785fe7eccf264fa4ce54c006866b9a0d562b972aedee6ace1f7cee8551ae |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-whisker@sha256:c54b9310461e555b6a4cbab07ed53c3469ca5456803238c47f73db11645b096b |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-whisker@sha256:1e8558f4027f253e80f4bbaf06e809cb89e84fc97ca7f36377a23d96edf24773 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-whisker@sha256:bba6e277a904f14184b35912abb0e35fd9a24b9d7cb366e33a58cf6961de1f55 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-whisker@sha256:220389d3928bb6a03c421c641489d116b3c268bb6226ff21f50954d6b1cfd622 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-whisker@sha256:76c00da640cca376f30e310729ca7ca83efc8e0763c07c3ef9590668dcfc877f |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-whisker@sha256:2e86b660dbeaba294a907d92795652742beea8abc0d9e700bd20c80e844a5ccb |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-whisker@sha256:9326f65cda99de7712c57ecd00b975891c289da6fde42589040826c75fe7c838 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-whisker@sha256:1a1009dcc48c680756817b5a25830ed7347860f147d198b30999ee96944a925b |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-whisker@sha256:515bbc075b4215f5ffc0fe07d48e812d07cff5f003c64215a9927cc7be763349 |