dhi.io/delve
1-alpine3.23, 1.27-alpine3.23, 1.27.2-alpine3.23
sha256:f6e56c1d9cf43eb12000fe53c585cfe2258ec8be5e527aa1d2b4ec6aa91a935e
Manifest digest:sha256:a02114827293f1a28f570c1fc9eb9ed750bdf1719c0bbb0db86bb0606aa9dfc4
Size
6.12 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/delve:1-alpine3.232. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/delve:1-alpine3.23 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/delve@sha256:a96b87ac88ba95544ccd291e8fe802dea9de5171886b11ea0f33a4f62785e394 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/delve@sha256:c226b91de5844f17ff946504f494d4c79423a5a4e7647c1cf645f965c8129ecf |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/delve@sha256:cb4267a7591e8b63b2dd8863167f4903e030322c9093f73b5680ed9674ddd977 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/delve@sha256:147da12c70ba85215e31899b607a65ea2be1b0f3211cbc1e4d11530b3ad23be1 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/delve@sha256:ac04009d22700d616f0ba6a4be2f5461c6d024c1172ae4cef3c5e10c19a337dc |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/delve@sha256:a4a62be1f769050f30b57069635c027152f10e1cb965a95e27ef164bfd13800d |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/delve@sha256:991ce5379ff3f15f205bcbda8c80290cd4cf38994be0091320bc43cd9f1a4a11 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/delve@sha256:fc47ae0add6005439dce271bb2113d0b39dc0d1e3eccf0805684d05c3fcf5508 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/delve@sha256:4f27c72b2bdb0cdbf6fd9fd1060dc055b279edb4a23f17fa0fe049fae563c9c6 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/delve@sha256:672c1b787bd2dcf75116926cb7df162d28035fe9e2d2fe4bc07d2f3fcb1b33a8 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/delve@sha256:4a7cfe93ff312b7cc2f4e40f6089892a2ac11b4d013210d854bc842d6fdf113f |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/delve@sha256:41d87e02f6653ff95a67741e6fc0676aacb8a34322a96753bf391595f4b0d710 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/delve@sha256:ec90ed31dc902ec3e0e9a0c9d8b76a6fb56a9b59abb61246f99c02258e5a9a00 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/delve@sha256:8af6cb456978a04de6c52266bd4b8852b91a8ee3d0d44206e11f71e71a045b72 |