dhi.io/calico-webhooks
3-debian-dev, 3-debian13-dev, 3-dev, 3.32-debian-dev, 3.32-debian13-dev, 3.32-dev, 3.32.2-debian-dev, 3.32.2-debian13-dev, 3.32.2-dev
sha256:35ac84de4ee42c7a472d07c62a32b7d2ff55eee3aa755b50e4ad9214edc9b908
Manifest digest:sha256:8c7eb45f1fed0e0da0e8ee4005bb1b4e25109615874d5b3add2631277a1da0d9
Size
52.41 MB
Last pushed
9 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-webhooks:3-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-webhooks:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-webhooks@sha256:8fa9ac8d59097f77d9d56dea14ea9bd7f806cf6b1c93d7b123b4bb90b8cd54d9 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-webhooks@sha256:f0ead5c79caa84ccd74fb38bf3cbf220e3cc81e9544c0ba745978051044e5307 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-webhooks@sha256:f6f4fc945e611c4fda18a5e7514b6ad2240e98b0101dd66cae84822c8bc4644c |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-webhooks@sha256:df0b80d5b196b9ad694ad84d30fe144c1cd9b3bb9a4f500c7bfc1f5ed8e99968 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-webhooks@sha256:19291b53c458591a577760d784cde1f1f2d0b69c84eab1f34eabd3cece67680d |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-webhooks@sha256:12eaa21bfbe6371fd8324fc8cc69d38e1853cacebafe75f27f821e86d575a30c |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-webhooks@sha256:38718b75b950adcd387c55422cdc3e5b64476a65a1e16e7821b32e5d6c9e9dd1 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-webhooks@sha256:fa4f081bf680a32f19137883fcd6fc7b4c8e83ba0c044306a03f3f6c64f2c76f |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-webhooks@sha256:fbd270ebdffe164546629503d4fcc7375727cb0d968e64aad04944745d1d97e2 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-webhooks@sha256:81f24bf1cf83829c29f79042be688ef0514bc187d647fe0e93b581a58b1883c7 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-webhooks@sha256:59bd9e60ff9da58adf82b44bb58235547b49bb35589967a3e47ac8eec90cb4b1 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-webhooks@sha256:5dbb8f1880a73cc33461c2cb493f105162d141ecbc3dbc99175ef59ee3a313eb |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-webhooks@sha256:46ef59acd515d534e1cb54bda73deae361509e0b6daf56df861b26a5442e2fd5 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-webhooks@sha256:4297709efe9809e68a7be4bafccb72cfa9f8436b68f8cb372f69b09f32333d53 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-webhooks@sha256:e252bd592c3715f181d1f9ed55ad2b823985eabd79febab7c5ec2500f90014d1 |