Sign inSign up
Delve

dhi.io/delve

Delve 1.27.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-fips, 1.27-alpine3.23-fips, 1.27.2-alpine3.23-fips

Index digest:

sha256:181b1d753037934d2e3ab96c68037c391237a8f05721d901fdfab866deaeb32a

Manifest digest:

sha256:9564e38195caa37ab252a9046edc8eb4ce456edc47259df8895591084799d52d

Size

9.51 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/delve:1-alpine3.23-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/delve:1-alpine3.23-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/delve@sha256:de1ac87994f6d521db154f10dd93bdf4b67f03cfaf2ddd09c39ec03f36c1fa26
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/delve@sha256:6846226429cad5325ba6d214fe7c7cb0bccf77d808d4a6bf1cafe91e291b1c14
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/delve@sha256:d2271148db8069c60af79dd44735210c223d5e128c3f95a594993e40a9cbb126
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/delve@sha256:266d1b246771aff2a8d19a59fa6b947cfbdde03bf057b1ce3c0979d3280042af
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/delve@sha256:fab40a536065860e1b0db137b0ee91796454c120a67fe71904e7ab9d8da78611
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/delve@sha256:685a840ef841c62d37d37326958de5d4d5de43753185c56419a003c2ec0d3556
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/delve@sha256:943b0c536fc417a562e9a0926369bd02b651a6131e51c3df16d80e48e52932cf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/delve@sha256:1b8fca37289dcd7316e765dca2dee001b7798342ac6d545dec255f8c51fdd1ec
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/delve@sha256:1c1200fb0c2e37a68fc6c4050fd07230ccac77756e011251e3d9807f2d0046ee
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/delve@sha256:03334a12c7250555bd6c49a8f63591df3521db646c1d195fb28de4d7e96335d9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/delve@sha256:d6fdb131873a8862b055a73342f9c693a0d9ec55867a33afe961cb77573902bd
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/delve@sha256:bb5e083876beff5ff05ad7013ebf95829a3c51373d10014c055471a53a86f044
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/delve@sha256:c1e2f9a76e41195440b150247fb6b4b1ee02a9504201d311c4973d079febaa09
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/delve@sha256:b9509745236d8de9c6c842bae7ffe48170a99d376692a3bf7aeb08cf8d93f067
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/delve@sha256:5b05c7f87c1f185108a0e0d062b307ac8924dab0d8e94e63b3a03e6f7fa0973d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/delve@sha256:4f55ddda1069aa5419c5690521a69fe9c72a7ef5398d2e5324c50412601faf33