dhi.io/cert-manager-startupapicheck
1.20-debian-dev, 1.20-debian13-dev, 1.20-dev, 1.20.4-debian-dev, 1.20.4-debian13-dev, 1.20.4-dev
sha256:4075fea3a734f42ab294b662ef27573f6bf6c3957458026a024aaa294f2df16d
Manifest digest:sha256:d225d0c5e563d86a2d99e7a565637de812732c08bb6278e1d7ff7d0b610dc291
Size
45.85 MB
Last pushed
6 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/cert-manager-startupapicheck:1.20-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/cert-manager-startupapicheck:1.20-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/cert-manager-startupapicheck@sha256:a9acae1381c1ed246f22babd2154064b057b4936ad22952c341b60dce589a1c7 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/cert-manager-startupapicheck@sha256:dda43ff747ff367b37342e76256ff4de6f9dad4aed2c70681d69cb50f0475d6a |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/cert-manager-startupapicheck@sha256:6617cd77baf915430185bf4206cde4eb443f80284178a95ee0ea96cf13b2351b |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/cert-manager-startupapicheck@sha256:4ad544734f4be504b16b3e9a781b55be959710f9c0a490bfd065d3e50781027e |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/cert-manager-startupapicheck@sha256:45e8071a661f2c7cfb092336cec989a960f3f567a106489e6057c78467ae77a4 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/cert-manager-startupapicheck@sha256:ad6d25124c7e5e4a62099b266ef05bdb0ee36dbf66a5c061975d7ae92d466473 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/cert-manager-startupapicheck@sha256:c56b8f4332c7761023ba4b38f724a41bb067e9c863ef6af909ea83ad61affae1 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/cert-manager-startupapicheck@sha256:040c523171e30c9360b9f711f80a24dabf38d73cf4a4ae640810867012c39916 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/cert-manager-startupapicheck@sha256:c5086ff203d34197bb077eb44372235057a63b00cc66c111174a2b53795350e2 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/cert-manager-startupapicheck@sha256:75dc5e38dd485d5d439bfd7c1b59a750a27a25c1f9d7e76a916ecccdaa00c445 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/cert-manager-startupapicheck@sha256:5952a5347273548cdfdcce95d8e2b2bfa461ee7c14bbffe2f369417d5c7cee2f |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/cert-manager-startupapicheck@sha256:ceb52b250216b1705ebca795b090424c54cf00b998985757fefe449319e21adf |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/cert-manager-startupapicheck@sha256:8c1fe80fd301687396911aa75e459591cfd87c7e2b52fa1d687d8e4852856cc1 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/cert-manager-startupapicheck@sha256:bed9acaefae0fb22bfbc3fb5bf2374c4b2f354de359a8e89584f4bd17f95acc3 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/cert-manager-startupapicheck@sha256:09f2513225153a5d7519ae3b57907ea6712bc4386db82fe5715336f5a00d57bb |