Sign inSign up
Valkey Bundle

dhi.io/valkey-bundle

Valkey Bundle 9.1.x (dev)

CIS
linux/amd64
debian 13
Tags:

9-debian-dev, 9-debian13-dev, 9-dev, 9.1-debian-dev, 9.1-debian13-dev, 9.1-dev, 9.1.2-debian-dev, 9.1.2-debian13-dev, 9.1.2-dev

Index digest:

sha256:0f57f205b905742f7d477c4454c98866a3d1fe818bf7760a27818939172c116a

Manifest digest:

sha256:f98e25f958bfb2e7c926c8861a506e5a61449f4e9f92770c0cb16623e231dd4e

Size

77.07 MB

Last pushed

2 days ago

Vulnerabilities

0
0
1
2
0

Support

Active until Oct 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/valkey-bundle:9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/valkey-bundle:9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/valkey-bundle@sha256:a2b6aab01cebc034d2f0609794118c8eea5264a3c3962ce6685556b56e7e9e7e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/valkey-bundle@sha256:1b30981ba87cc7108c35b5ad35c0e3119112b3d23513c63fc5180384df5007c1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/valkey-bundle@sha256:4c3a63972ce653f46884581697bbb50983610230e3746e767afbc7179d9559b4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/valkey-bundle@sha256:1bb2a375268d4e555cbafa2718022dd579a259f283be5af977925f2bdbfd5cdd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/valkey-bundle@sha256:826f967518b2d06d6119aada80769e075129b635942880f1732b23d655c6c5c1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/valkey-bundle@sha256:e98b6a11f98983bd891d62a9c03531ac5bca2c842596cc446927350cf8fa7b4f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/valkey-bundle@sha256:30e1620f0c23519e9ddbed7daa2a56a23086a9de03312c869d4b7a5ec1940ae2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/valkey-bundle@sha256:6e6aa086ec80766b62e0297fccc5db635dace8856450719ae0addba50f0df62b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/valkey-bundle@sha256:3fd36a02ebce291bf7f77fd3e3afb6a78a9f490779943264d5c4b619ef067933
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/valkey-bundle@sha256:d6066acd2c3c6048bc9a03e142266fbeea0af8043b1ba9c9e7dd1e57a9cc01c3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/valkey-bundle@sha256:e4d47cdeefe41b5378c5ce78840d84dab48b4c53b05366d02315d18612c17751
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/valkey-bundle@sha256:bbd175ed89da047d1cfb4d1853f1a3ed8ca95b7508a33023cd7b82edfaf87a4a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/valkey-bundle@sha256:4ea7ae0ce9b6fa65b9d99260adff066b16b03288813f71741b0c5bd3eacfb697
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/valkey-bundle@sha256:56c5db79f61705af0d1c7bedb332bd4f78eb878ee192480f1e73de1f4ee5814d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/valkey-bundle@sha256:d4b47a817769b7c477e4ac04af6a79bc8e6eb234ae872238d9abc2711dad413f