dhi.io/vpa-admission-controller
1-debian-dev, 1-debian13-dev, 1-dev, 1.7-debian-dev, 1.7-debian13-dev, 1.7-dev, 1.7.1-debian-dev, 1.7.1-debian13-dev, 1.7.1-dev
sha256:efb5edf0729f6631264b116e6c11db43188339fc5d0cdc361a2f14f5b009b7d6
Manifest digest:sha256:42703a6fda283a7e50164404e0a80988987492d330a9cfcce8d7da0bbb5e6ccd
Size
40.53 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/vpa-admission-controller:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/vpa-admission-controller:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/vpa-admission-controller@sha256:9451c4be46ea72bacb5bc7e2a50c899627e646f7d85a3c49728af249f0c0b527 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/vpa-admission-controller@sha256:62e23dad72be1531eb334dbcd8a3b206b68a25c252a81f5bed78ce161ce0e84b |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/vpa-admission-controller@sha256:5fbbb25cb7c0022fddd9377cc620c078f3067028bdbc523e547f7319daffd975 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/vpa-admission-controller@sha256:3511cf9280bc89f4874d31347f1525f7f429e1d5592961e11083703b0e9e0263 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/vpa-admission-controller@sha256:03369413d4600ebd1689d33448b4785d03beeed82db15abaf4695c5b29c58970 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/vpa-admission-controller@sha256:d1b4a41a17e562dca386b9c09b77f6a96d9bb1c24d279f57ecf25ef176ec9a9b |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/vpa-admission-controller@sha256:e19df5cc1625561b8346dd8a497fb92522caedcaf3c194edce4e910abdf5224e |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/vpa-admission-controller@sha256:14295053b130695105186d6107002f48a02be6a0bb3165e25975fbf6f8f0a9cb |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/vpa-admission-controller@sha256:8afe4c91989743cd78fb7678e7f8642217a1d3deb7717607322d9a6d713efe67 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/vpa-admission-controller@sha256:d037071375e51089fac66e9e38eb83f3e8920c68d28276fcfc66be97e43bdce5 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/vpa-admission-controller@sha256:74ceaf69ccd9eebb5c72f306e6da3026c10a2629da80e879ca13edfe48212581 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/vpa-admission-controller@sha256:921c3c2caca336a002979eb58a1ed60182fb0537014359357fabbc1c05ddeda4 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/vpa-admission-controller@sha256:622638483d78153c1ac6619838e5da1a3ce5120f069a0e31eda3751d3f772f82 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/vpa-admission-controller@sha256:15bc49cbd7ec8fbbac00b97f2950c77b1a38fbd85bae172d57bb67513fcae78b |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/vpa-admission-controller@sha256:d80dbb3754df77ba0fa0e0d78b25875651bd1d4928005a6e0398e43ecc760fe7 |