Sign inSign up
Delve

dhi.io/delve

Delve 1.27.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1-alpine-fips-dev, 1-alpine3.24-fips-dev, 1.27-alpine-fips-dev, 1.27-alpine3.24-fips-dev, 1.27.2-alpine-fips-dev, 1.27.2-alpine3.24-fips-dev

Index digest:

sha256:ce9d86508164bcfa23e76c9d1cac525e4a8b6f120d3114ef9916bd5d0a3b2d7e

Manifest digest:

sha256:4df7d8cd440b5f65ac827b03e8f201c2a96eb5314b300d3ff05a21f1ded9102a

Size

15.55 MB

Last pushed

19 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/delve:1-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/delve:1-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/delve@sha256:a0e2365ed5b42166066f61aa47d8d295a740f7a47bdc439e605dbb35c1274249
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/delve@sha256:ce0d7c51b5fb9e50556340ffc189c6a99e8d3dd4a0fb713b678a4f0fbea82a25
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/delve@sha256:76aa492ae73d942d149333b64671bf4a8da4a96be5675d643e31a4e829debb19
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/delve@sha256:37ff1c8ed8a41b477a715c336eb4eae31ddbd271b097e87de46434a4fbade61d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/delve@sha256:ea6cec221fc740fc9772ecc20782418526a0d935a7050da6a90174c394f46c7d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/delve@sha256:cb3d6db2acc11c261d7c24d2bfb8f7ca5f8a3155f656f44d61ab44a48a439148
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/delve@sha256:80d749a501be881e3a34cfd2b6b6369667ec39e9649f5e36fdb1fd5cca6d44a4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/delve@sha256:ca85f1826cfc8d2962da37b14634892394f6c5d0cbf155ad48fafe276d778aa0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/delve@sha256:386148cc2fa980ab7308cccd24e6be04d6d4168f730545666144068862fc585c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/delve@sha256:dd205adceb763d1d887d6e4a211e9ee65808a9b4eff45f981fcbf52ce6c9d2af
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/delve@sha256:99693cfe491fca5217ea03d42155440bb9370dfd6258c6e0836c2cf0ce5733f0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/delve@sha256:36375f09e43a81f4df35d6c66f7f8936d2060d471c5ed52b11acba6e05af1566
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/delve@sha256:a40cadfd82146304d0531b7f72b4d6f62ff75e89b007f2ca58c7904fd0ce29b6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/delve@sha256:a2047bd38d2385de3603231369047e86ed267edef47052dbd9171bc3b86f972d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/delve@sha256:1399894e99cc3d89fbe40f1741240bbebc6eb18e79aa82db6cede1f32f8999b6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/delve@sha256:5d895e82a0c9b497dcbc49ec61b4df1541cdda0a5fdd8c687d1c3f3dbef9336c