Sign inSign up
Deno

dhi.io/deno

Deno 2.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.9, 2.9-debian, 2.9-debian13, 2.9.6, 2.9.6-debian, 2.9.6-debian13

Index digest:

sha256:7d04a8df17093ca5e52a5867a3474a8863bd53767179531b80bb392b785a9f15

Manifest digest:

sha256:0d19cc377c622ecb0f1fc85422a75b8ba0ddc2c9c2a9d395c93ef354a4874d8d

Size

102.48 MB

Last pushed

3 hours ago

Vulnerabilities

0
1
0
27
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/deno:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/deno:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/deno@sha256:fa340ab2153b833a5f12dda70125f2b76883a0ca182d6a763881eeafd1ba9771
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/deno@sha256:d28c72f8edee7abb57525abc1fce88b12c28740cbaaa827c280260e8c2542ab7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/deno@sha256:acb1a2e4cd8a787c3236ebee954be57f35a3db01c05b710d75c4ceebfd262735
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/deno@sha256:53b44cc3ce567e736b009a614d8ddf69adb388f4010a14c040b3b6682b1bb50f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/deno@sha256:45b96bca24203d7b4bc1a4f0337ee32e8d6a88cdc09a1e866272b60d38c14e90
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/deno@sha256:e1b3c297d5ad14c6e8f06be285953e696ef22e3dc43f637783f82613e1bf4124
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/deno@sha256:1a028e7bcbf567f47e2d76497cac30680ab3e3139b681aa6f19ec33b1d6958bb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/deno@sha256:2837a7d50e28b88a9e6abf4fb645d0b2acb0c4c1efe349386ea33ed1ec95c19b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/deno@sha256:fc2b660e37d5415c049bb9d5f2111fe7c79f1e1ef99c06f368cb04d6bf28dc37
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/deno@sha256:741eb59533127a8c0e8178dc0a83767e26eb21eb4f324d53f31291448bcc949a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/deno@sha256:6e3411a4db0e4524698f443dd3c90a0d63976e7406934e7a0a79d324c9835348
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/deno@sha256:317d53c8799b495c43211b9c87c3048d7fd444b3916461660951c2fcbe0cac7c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/deno@sha256:32f674703c4c1e07a4b4fa02f1b63df2d53ab44fc9ed53a77380b651afbff704
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/deno@sha256:b65cbbd740fc595b483f6c49d57c8181fc8bba14d087c52053cbf3e3b3f8ef7f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/deno@sha256:6eabc0c54fd07cd38e33653731f9ee241ebb825a129a68256d1b6607f0472ffa