Sign inSign up
Kapacitor

dhi.io/kapacitor

Kapacitor 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.8, 1.8-debian, 1.8-debian13, 1.8.7, 1.8.7-debian, 1.8.7-debian13

Index digest:

sha256:0632f960f3bf7283b71fa4f00c46fd29950a7cf34ba9cbffeaf0c20a87ceb106

Manifest digest:

sha256:370f2fc89a7f97e3dcb89c091c7f63a0fd91222289b674f5b90562c618869192

Size

67.90 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kapacitor:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kapacitor:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kapacitor@sha256:d2e4eafc759f4c4e3c7c3ba2d0b5583124d5f4e65f156d9cadf1fd4a2f714690
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kapacitor@sha256:6f28e2b8e229f281d1a4d5d569a1b5212b2dd25c96c7cf6b74f8446894ceb40a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kapacitor@sha256:7f7ea9105ff7180469ed5f209fffba8d6ec1587c11ec9535c18ff23929711f9f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kapacitor@sha256:c7df69edf609f950079cf71996a1ab2a37913e397a337e421c1ad19696eac5a8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kapacitor@sha256:83c1ac09b9ef9b5ef1c92764944f3a5e744b4de29342d1db4e8912b376d1e678
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kapacitor@sha256:8ef8f3cf11a45e4e9591f3237d1223ef21761a5e061bd7474537b70ea6929a12
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kapacitor@sha256:d853c38a02d8dbb5ac68237fddb3dec42fa0be566ef0ffead9c0e17003df2c89
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kapacitor@sha256:51596ed0479f0673b09f29bd738ec4ed99f9dd6d684ec6ebebbeff5076415c72
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kapacitor@sha256:5b6b4a41f72b7a5bbc98952627a3a6df912fcbadb11d687a18674d38b18ffac4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kapacitor@sha256:3505056197c20479bf72555c5a26781caae675e58de52168a76ea7fab374341f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kapacitor@sha256:a13fe93916783e69f7fcb04abaf95761195a81c344a1e2391ebb8210d9e8cebd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kapacitor@sha256:7935ec49fea5db318f2444624d5639cf507f3dd5fd750269e6068bfcfbceba43
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kapacitor@sha256:cae6e94ef3522f7bb9e6d940c9878f07fc4e5dc5512610049f720b1420149a98
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kapacitor@sha256:d982ccfbf3ce005b14c45cadc34c76e6262ee2b69de4f4e4bb1daa2cb511d3a2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kapacitor@sha256:e99aa99b068b0feae45452fe07b00bde9197f4a08aaf941c2d164302562da891