Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.31.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.31-debian-dev, 1.31-debian13-dev, 1.31-dev, 1.31.2-debian-dev, 1.31.2-debian13-dev, 1.31.2-dev

Index digest:

sha256:f8925d4da43b9d74a55b7ec579a06f665316121868682eb89a05681e751b2077

Manifest digest:

sha256:87b09279c7ce403c68167c824d2ce6188667ce24202d73a01faebb1756406709

Size

89.44 MB

Last pushed

2 hours ago

Vulnerabilities

0
1
0
13
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:766f60c2f51bd6c6533612794c0745b3c72fde1fdc872dbed71b81e3f66bdaa5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:4bf4bc5231c2b04286e1030d9f145e1810ce21fb8c6dd5c25a5fc2ae7c85dca5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:bb20cd90c1f7a80d0e521e9226572b530b3d7d6b1cbcf06cf4fe5e7c254500a3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:c72e44a7a50fa237432a7204b948b71b71112d26be5d4ea1ef6cfa099f301ec5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:41b1895d7cfd0902188be30dc75360b82f930fbdc4d7c58e846dadfbbf06bfc1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:be3714244ab7749b3b064708ee87709da07875ee541db0dd18b67c77640f431b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:ed000b8f403912f2bca640af069b2cf7b357f483b0138888a5b2561d9a42470c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:0abe969710ab4ea12d6ec14327b1b645312683a3baf0a5c9bd4275e4ea7195ac
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:914f80aef18d2184db35d66c443a8a1d23dfaa9781d9b5e6193a06831bb653bc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:705515453fc5a67a8f396bf2e0fec4d00dd7dd8673da51d930ce9e19fa7755bf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:f71581e9ba1af653b36a2942ab69bc8b487ffecd18b4d27765e5adf06ac9f675
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:0e4c94f2a5059182b34516bb65e31da6a9e2b339e1b5e364f579919f47c14c16
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:2701778be3d46cfedf63a190ee197d40287faacf6459cfe70c7e3193a0fd4d79
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:e63d6708df64df415c0ff1d875e21bae78a7fae79742ce7a406049cccf482fda
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:6946cc23364cc7ffe48c7863fac1932fa2d56006e33eff69028a1a884c899a97