Sign inSign up
Kapacitor

dhi.io/kapacitor

Kapacitor 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.8, 1.8-debian, 1.8-debian13, 1.8.6, 1.8.6-debian, 1.8.6-debian13

Index digest:

sha256:b0beca8f766b1d034244846f001d14b38b453c3cd763ad02e2737d93a9ba019d

Manifest digest:

sha256:77c996859b79675c2c07976a86347d6f8018ad291b33102b8b03355a4b399f62

Size

67.85 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kapacitor:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kapacitor:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kapacitor@sha256:219ad14129d31b41b4778e8b2a89bd8a4b0b211e5243e2de3773efa535111057
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kapacitor@sha256:48513e181d699e94d8c3fb4220a66a0dee9686ffd29fc5d057b7656090a90636
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kapacitor@sha256:2f8fc45c30533af6a2008d69cc8bc284038a123a637c13dfaf1f1fd9cdcfacf7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kapacitor@sha256:1ab6ae26ed2ac3a313e3b675af1f53164533ebaf1f10efff706e9e7ae1f24c84
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kapacitor@sha256:97929e815f6d377d76e716b3a391ddea60414a1cde31cc35987dc3fde35ad24d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kapacitor@sha256:4ce3cf05b58fd61ec13b1723960776be447ff417790ca9966a359bf3867ca48a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kapacitor@sha256:1f391eec193d0546a81b991fe87db33178739b763a7c6b77cb59fa5f3b2941fc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kapacitor@sha256:d05a136a1ee92cfac677d44ee95151adcbcd5a98eea7fe7f3989c1556eb09ff9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kapacitor@sha256:90751560e2b8401181bb501a5b1072e7e8489fb51d1580a44ab39d08050a6adb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kapacitor@sha256:41de19e456cbaf833d458b82dee6200b32bfc88aa67ca973d3f5c7d491e412e2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kapacitor@sha256:fded1de6df793e503d5d03375c16060a0ee352b8de923678305e58bbc7853e39
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kapacitor@sha256:00eec3021db9e57cc2648b828e89689e3896ce2e594ab5982100e5c1c8024018
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kapacitor@sha256:6e011b7676ebc191c63198752e97cc2a59fee4b84878006f9797b330168db5bc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kapacitor@sha256:6c4a454c2e191803320f4604befdb6fc02a24fd2b8b4c66ed6cfbb5cc347891b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kapacitor@sha256:6c7c9afee42854dc8cfbd78de48eeb7f24d3f7d118ed052bd4c42fd3e194270d