dhi.io/kafka
4.2, 4.2-debian, 4.2-debian13, 4.2.1, 4.2.1-debian, 4.2.1-debian13
sha256:5c8734d48b633163c71c91c454216c4650e96ccf3ab7d1a62273e5768270fe78
Manifest digest:sha256:95ecdd2c407b7a9b7a86e9cb070e32c57c6e4cacf53184fb57f1f2a8e326bcbb
Size
181.24 MB
Last pushed
2 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/kafka:4.22. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/kafka:4.2 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/kafka@sha256:acde733fbc0f9b9929c889e3f6e2493cd2ad91992e6d836a76618e45525b31e9 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/kafka@sha256:ca3f1d59c5a3c480153666952466c114bb4c51bbe5e3f296367950e63d15cbca |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/kafka@sha256:a7617797ebf6ad1ff3ce1b7f000e00d65ff535b9bbfc77f7e7102958580a2365 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/kafka@sha256:74b3f6b84793097592815c248ed977eb2ad3604022e8fe86542ffce3a6bef201 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/kafka@sha256:8705801b87d9028164b1b85816e23dd28c55de3a658da8db1fb7127e09ac4c8f |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/kafka@sha256:be4a1472eb6babddf993871572a25b79e041445a8164183a3b182d9a7ff54e57 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/kafka@sha256:9c502d8dc3799aae23a84b2919c4c9522e1bc458fe8892b7713535e8bdffbf22 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/kafka@sha256:aae5e7d3e5ca71a7e6022dce473de5675733a2bfa1f909e9b30b5af04604fa12 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/kafka@sha256:6b6bfe8dab97c8a6f06824cb1b754e1494b36852daa3b07b35687440805144a5 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/kafka@sha256:20f3023b282d279b9d2921f216b6337404baa1a5feb6e22904b0b608e697f062 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/kafka@sha256:67c479bde2bbd823412925d6c46e605e7719355c83f4c250cd6d2938b7f825b4 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/kafka@sha256:a73aeb9dc1e4b8f72717b64cce095c3ee784ce2599e189adc9d7eef5d85ebc47 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/kafka@sha256:94a25c3b43e45850eee4b1d4a2fc2f50c6a16c1f807c45312795b50128c05eca |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/kafka@sha256:edbcc4de51ebba481f002b6b3fcec9c872e74a4d7691712097c29ea8aa71ae33 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/kafka@sha256:512480e6aa336f9e1dd2e2f2e02d71072e5a1878103931b269c609156bf3e16a |