dhi.io/delve
1-alpine3.23-fips, 1.27-alpine3.23-fips, 1.27.2-alpine3.23-fips
sha256:181b1d753037934d2e3ab96c68037c391237a8f05721d901fdfab866deaeb32a
Manifest digest:sha256:9564e38195caa37ab252a9046edc8eb4ce456edc47259df8895591084799d52d
Size
9.51 MB
Last pushed
6 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/delve:1-alpine3.23-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/delve:1-alpine3.23-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/delve@sha256:de1ac87994f6d521db154f10dd93bdf4b67f03cfaf2ddd09c39ec03f36c1fa26 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/delve@sha256:6846226429cad5325ba6d214fe7c7cb0bccf77d808d4a6bf1cafe91e291b1c14 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/delve@sha256:d2271148db8069c60af79dd44735210c223d5e128c3f95a594993e40a9cbb126 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/delve@sha256:266d1b246771aff2a8d19a59fa6b947cfbdde03bf057b1ce3c0979d3280042af |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/delve@sha256:fab40a536065860e1b0db137b0ee91796454c120a67fe71904e7ab9d8da78611 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/delve@sha256:685a840ef841c62d37d37326958de5d4d5de43753185c56419a003c2ec0d3556 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/delve@sha256:943b0c536fc417a562e9a0926369bd02b651a6131e51c3df16d80e48e52932cf |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/delve@sha256:1b8fca37289dcd7316e765dca2dee001b7798342ac6d545dec255f8c51fdd1ec |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/delve@sha256:1c1200fb0c2e37a68fc6c4050fd07230ccac77756e011251e3d9807f2d0046ee |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/delve@sha256:03334a12c7250555bd6c49a8f63591df3521db646c1d195fb28de4d7e96335d9 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/delve@sha256:d6fdb131873a8862b055a73342f9c693a0d9ec55867a33afe961cb77573902bd |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/delve@sha256:bb5e083876beff5ff05ad7013ebf95829a3c51373d10014c055471a53a86f044 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/delve@sha256:c1e2f9a76e41195440b150247fb6b4b1ee02a9504201d311c4973d079febaa09 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/delve@sha256:b9509745236d8de9c6c842bae7ffe48170a99d376692a3bf7aeb08cf8d93f067 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/delve@sha256:5b05c7f87c1f185108a0e0d062b307ac8924dab0d8e94e63b3a03e6f7fa0973d |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/delve@sha256:4f55ddda1069aa5419c5690521a69fe9c72a7ef5398d2e5324c50412601faf33 |