Sign inSign up
Ory Oathkeeper

dhi.io/oathkeeper

Ory Oathkeeper 26.x (dev)

CIS
linux/amd64
debian 13
Tags:

26-debian-dev, 26-debian13-dev, 26-dev, 26.2-debian-dev, 26.2-debian13-dev, 26.2-dev, 26.2.0-debian-dev, 26.2.0-debian13-dev, 26.2.0-dev

Index digest:

sha256:e4d1edfd2edb0d0ca4585fdb665327d44a3f47f1cd6a58a87431755bb76ee6a1

Manifest digest:

sha256:da2d2464aa7dcf7840dafe525508d9ad9f6b60d6b44ff9a8459d0a7071284f9f

Size

53.99 MB

Last pushed

3 hours ago

Vulnerabilities

0
1
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/oathkeeper:26-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/oathkeeper:26-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/oathkeeper@sha256:fe3e6347892619d8213fb4f5851a589b1da17fa91586a31e9b5da443c391702d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/oathkeeper@sha256:73fc6e80069aa0a25272da55cfde2f21b73c6b3c3b152092311df459ce434df1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/oathkeeper@sha256:331bba9bef87ec22e1aa66f00a2726e248381c4d87e8050a8fbdc6bfda5262c1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/oathkeeper@sha256:dc2ef23915f5957e9b01f53288752f9bc067e51786d7899012bacf561cdba3f6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/oathkeeper@sha256:8f049d810aedefa7e945e5ff930094c79f8592daba8bf1b55b577a6754cd2f67
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/oathkeeper@sha256:847a7b6e02f39573ded1c84c9c9aabc660772f2e4c4124026b4f5a3d0469c284
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/oathkeeper@sha256:f7ad0310dda3d07472651094b86ad91680f356d4cb49fe0e5bf75a361866003d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/oathkeeper@sha256:143fc3faabc07f3e76c287c14466ae68f1b4bf09079c746c0579e8bf3aabebd1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/oathkeeper@sha256:304e27cd6fa0fc25387c155a9612d90331ac9e0a73249f8ef03e49ad7f26fd94
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/oathkeeper@sha256:930bf8601dc83ee6b6d4e0385bdf1b0c6a43660d01186b2fe41888895c264716
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/oathkeeper@sha256:b46b6345aba72f7812676db092d3d262d3a2eca2db3b98004e4349d969c11831
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/oathkeeper@sha256:e88b823f3f7fad30897b23e94f0269fb27c5be19d4d38aff7602f0a901d3d635
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/oathkeeper@sha256:b5f2d91b347ff7959a76a3920ab5a7d294168d63629ba02b67584c26d9f686b3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/oathkeeper@sha256:83e832d47ed9367f4f089ba81c7b96dedcc2a9bc95d09c90474d9a1d3dac1925
SPDX SBOMhttps://spdx.dev/Documentdhi.io/oathkeeper@sha256:6d09147c06f63e2b06a580813819866b938f9b805c4b4088ef2b35c4cb8c9626