dhi.io/pgbouncer
1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.25-debian-fips-dev, 1.25-debian13-fips-dev, 1.25-fips-dev, 1.25.2-debian-fips-dev, 1.25.2-debian13-fips-dev, 1.25.2-fips-dev
sha256:d2a0bfd3d8898b8e4bc0878f8224327d2f2d9bd31b43f17f593624a822f5628a
Manifest digest:sha256:4e15d19ba819efe0543391c93b487d420a37c430329c2dfe3e7280ea92583d4e
Size
28.37 MB
Last pushed
2 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/pgbouncer:1-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/pgbouncer:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/pgbouncer@sha256:09f9796a3257d87e6395b576fe88d44f0ea156e4ce078e93caee920c79857d1b |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/pgbouncer@sha256:c138729ae6d8ef94c26cb66c06903e50ed72626d50ad5473828e196fafa6880a |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/pgbouncer@sha256:d123f519552f69af04558a1027c74694e8947394f101814c7799832844542f44 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/pgbouncer@sha256:3a555fcc800dcb836e118243d82bbc18b97389465b444ba767cd6203ae46e3f1 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/pgbouncer@sha256:fd1a0ea3f02485b72e2f060a07ad7f4e7f1b3456b6f830c2b4189eb541aded02 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/pgbouncer@sha256:a595e6a0dbceac08f6455ffb52824abb8e8d5b6f0cf0918c558fdf230eec50a2 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/pgbouncer@sha256:b9bf249d5ff1901401f82da32924f80bb75689dbacee3f92738b9fcbbc4b6673 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/pgbouncer@sha256:81676bc6a78656de3f0c343d2b1814d775fcb0536aad4f2f0dd2dd5a2aeaf2d5 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/pgbouncer@sha256:a9115870d6d026c36e521e3bf498c473e49c8284d09c4cd42b8d9659a86747bb |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/pgbouncer@sha256:47e1fa846fb65a54c7fc383c82130802c214e0b078f179ba97491035a9be4f40 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/pgbouncer@sha256:fe39b7e0bfb814340081b88c33cd9e57c1eb0824c8681b612f057e997ccdd3ca |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/pgbouncer@sha256:705b8a00e0701c612ca63d4369f30aa911a15163435d441a2ed9dc5abcfe554b |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/pgbouncer@sha256:cfdc9c9ec8eb5f43f3108ce1b1a37767233bc2cfaa7357bac22c3131677a665e |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/pgbouncer@sha256:4feeaf8304c7219dbe5d0d0bb7043fbef843a06b4a106699f71cb436c7b46dd2 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/pgbouncer@sha256:7711054b273f5e3715a3d17e945a7ea0db76eed6374724cfa15ed98c1433349b |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/pgbouncer@sha256:22b8939de24569fa0562bafb51f660d8c8a5cdeabf732ae64c69c59682c98256 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/pgbouncer@sha256:3c42b98bd8e1f25ba8b2f2904b0153ebccfe73ef25fa08a299fdfc6b69d062ca |