dhi.io/kapacitor
1-debian-dev, 1-debian13-dev, 1-dev, 1.8-debian-dev, 1.8-debian13-dev, 1.8-dev, 1.8.7-debian-dev, 1.8.7-debian13-dev, 1.8.7-dev
sha256:45420fc5ff31c3d46a8f13d100b6903712dded0dd7dadc335a6231c453ba90f5
Manifest digest:sha256:769705da474762d5af06fd9315ec49d3bd69e04ebb335fc63bd0fd08d3283728
Size
104.00 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/kapacitor:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/kapacitor:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/kapacitor@sha256:5707b3f5edaca474e886f58784bbc671a337c2b2fd46ef9e411695b0d2204050 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/kapacitor@sha256:368eafbf5f0365e048a4b7de8c2ea843835985e06155016002559e66ba3ed7ab |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/kapacitor@sha256:f4c1ff5a1e7bf5ce9fd68543cae6d9c3c6c0caebf5f4e207cbd4fec6bcc4c94d |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/kapacitor@sha256:d2f09413da7bb484e93e87a7ff6bbe58b00ee2c3ec1dcf0abc65a11219c1f63f |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/kapacitor@sha256:7f669a2ac105cdf3059caf16e57bf3e326c8dc7921d100f94fd5413535f5c391 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/kapacitor@sha256:a816a73f611d89b1f6b77f54a8bc4e4aa9157bc2c9d6c808d5670c21735327be |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/kapacitor@sha256:ed6fa106d1293c0442f5c8116d2229693f3aad2e9fcdbbcd89ec9b90c5114a3f |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/kapacitor@sha256:4ff37d9cde9e6ba98bcf7ba3e6e8cf6bdef933dbd8fb5c8c79d4e11a648bbc28 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/kapacitor@sha256:1196bfce22dea9a59f8049431d19d88a3a25f7722eeb0330cfefd5672aad73c5 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/kapacitor@sha256:9aca042f5907de3dae57748a35fa134634849a6531344f86d4d8eeefafa53175 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/kapacitor@sha256:aad524147a1a798bc126a254861a77c9bb3f363b69cf1ba3436d18a36d678782 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/kapacitor@sha256:a5ba6b3c0f30c43fd0edea9a3086185aaddaf3fbd9b657faa526280d8d71e188 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/kapacitor@sha256:7f78a5568632e29ea00438e4a6421daca1aeb4913c7342c627554d9d400cf504 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/kapacitor@sha256:3e05a53522c0ddd252ea7bb8d951214e611b0214f5582922c0328738c70813d3 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/kapacitor@sha256:dc00c89cc8f0ca063318433dfd2bae50b14857fae013fa98f94d7f9c9556afba |