dhi.io/azure-keyvault-controller
1-debian-dev, 1-debian13-dev, 1-dev, 1.8-debian-dev, 1.8-debian13-dev, 1.8-dev, 1.8.4-debian-dev, 1.8.4-debian13-dev, 1.8.4-dev
sha256:30de8485ed414a2bd831a911f665a635b4143ae2983be779ffe4346b10333f1a
Manifest digest:sha256:ae0107c4576eea5d0477d8d73a8610461ab88b19fa50053f5d67644c49ef13fd
Size
49.44 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/azure-keyvault-controller:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/azure-keyvault-controller:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/azure-keyvault-controller@sha256:a78c36acd23afc895ed095d2c1b66708a1a9fa7ff8a9c5a5d9b3ea7a194c435a |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/azure-keyvault-controller@sha256:fad1b1335e03bda9b9c48a51bf006971bb5fd6d9acb07f631da3546ef08af48e |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/azure-keyvault-controller@sha256:72e74bf817e26fed3efb07afcd919efa96ae9f90d3a3863b0bc2027fa5e25f12 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/azure-keyvault-controller@sha256:27fe900a01b9cb5636fa3116cb54bffca49be41d6f55cc1bc0eeac61099722d7 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/azure-keyvault-controller@sha256:a503ff3f89b887139848a276798cb1a49e4efa93ca6ae01a0b99d37c25d2091b |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/azure-keyvault-controller@sha256:f47618cfb8407d9b24c1e1e32aea4e1ab93025bcd3a40c6052e08eb2cf08e728 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/azure-keyvault-controller@sha256:05440ab9470de3bf633051676d158d48ac95cab1c9f06ddb47efa57b989f6eb5 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/azure-keyvault-controller@sha256:124fe81224a763f2b438846275853e7caaca352614df9585bb44081ccb684aee |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/azure-keyvault-controller@sha256:b90b532bea27035ff5c56421e81751b89839a3f062c0970766589d1dbf769101 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/azure-keyvault-controller@sha256:eb20a0406fbfc128ba04627c3f84fc14ece65de849a29bc13f9c5d47628df29d |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/azure-keyvault-controller@sha256:b3c38f418881a97b5c112e6d7d1a0a1cd3f9d506b418c50a3cb5f18f1362db5a |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/azure-keyvault-controller@sha256:0d932f95355397921bf7beabe9dee7690f2a5d2a76ec70053f7be0533926740c |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/azure-keyvault-controller@sha256:246211a18437d2b9c4ad526a24f6e4eb64aaa42fd4255c0040605227a09734d0 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/azure-keyvault-controller@sha256:03f53b3cd11702bcfeb117d6d415f8183770fd5c50d0f8d2666de3198a06f77f |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/azure-keyvault-controller@sha256:981977c8424c5fbb9df69cc8a9a4d94ccd8684a175d7cff2fac7f80846b586c9 |