Sign inSign up
Valkey Bundle

dhi.io/valkey-bundle

Valkey Bundle 9.1.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

9-alpine-dev, 9-alpine3.24-dev, 9.1-alpine-dev, 9.1-alpine3.24-dev, 9.1.2-alpine-dev, 9.1.2-alpine3.24-dev

Index digest:

sha256:f58cf5fde893ddec62ce04e6f9e658e33cb862035e2689d6abb7d13411ce99f7

Manifest digest:

sha256:fd1dd3a2510387b9a88e2b42be78d612064d0ecca405636600c9fe1db8a9dbd1

Size

60.35 MB

Last pushed

6 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/valkey-bundle:9-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/valkey-bundle:9-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/valkey-bundle@sha256:592328f42fab5b9212ecea543b75d93670a39de42437575c55a95dbb410a8b7c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/valkey-bundle@sha256:8d9decc7956e944150bad52707f7fb6eca88e2f591027771952670048f69c409
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/valkey-bundle@sha256:ae35c03e09fcba6846abf876f37de65146a77e12104459b3d78f2ab197766f89
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/valkey-bundle@sha256:6f369ef8db2d4893214437aac393934a09c0430bc102278c301f9fa80c8706e8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/valkey-bundle@sha256:10d047f44352d0df2aa0177d170cbc98b0c865aca853a9c2891b2fb4e90802f4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/valkey-bundle@sha256:5c1deb28054debb6b6eea65276d12ad44068b70277d0f64edeaf16fdadab1941
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/valkey-bundle@sha256:5ecd6aaf770e794ebb5f554b912873926718026c7d7bebe6775d97672363c3c7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/valkey-bundle@sha256:1b9464f64db9f23e056caa94f26058219ba4ec88d88c663f6d44f59be2ea467a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/valkey-bundle@sha256:1264f359922e2a7df7c6c090a2f045f049fd7696716d39c0fc210357688fe843
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/valkey-bundle@sha256:39b27199a1364a0991e963fa49a31f8a2a72d68e38930f168758fa92f624e614
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/valkey-bundle@sha256:3114bc4f7aed67220ee4e321db81f31fbe3de1a45f0241557a0b2e6bf74db1a1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/valkey-bundle@sha256:409d86055ff78882cb1fba845ef7e64e485f1826e337e155fc5d1cd8480ad469
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/valkey-bundle@sha256:b911a10e6c90fd5b814cc168e7d906a7c65d87c93e61a1ae5076651d3882549c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/valkey-bundle@sha256:ad4b1c74414873c43d9b44a50e39e2a0757601d367ab6b1ae6e9fb5f36b424c3