dhi.io/calico-webhooks
3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.32-debian-fips-dev, 3.32-debian13-fips-dev, 3.32-fips-dev, 3.32.2-debian-fips-dev, 3.32.2-debian13-fips-dev, 3.32.2-fips-dev
sha256:bc70292ac757d6ccc6aafef9816941ede6e4253d074900000c4e0106926b6aef
Manifest digest:sha256:eacb84edd53c1e1a75f8f3c8beda3dccb3a1844038d9e5ab1e8f8675dcb683a8
Size
53.18 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-webhooks:3-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-webhooks:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-webhooks@sha256:a9350b2287fd001b06b7470c9b15fa7433278cce9da7733288ba97baa7d5f3fc |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-webhooks@sha256:7309f78fb53c5e7b895cbd4ecfa17d9be0abd352df57e8bbb9cfe032fc132536 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/calico-webhooks@sha256:e0a3c6cac810a7dec70d4aa6cc4c8b459deb7f298b82cb379caf65af9bf02a6f |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-webhooks@sha256:ea293c9498505213b6132c82c4ddd9234dd81e33ee746a79d7bf579c04004409 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/calico-webhooks@sha256:d51c4985c2cb0255137448cf1fdb39ef485aec0f47b21b8eecbba2869a4483b0 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-webhooks@sha256:e22c480fb4e83b66c6aac9a665e5d77db64ec98b0de4bace6f63ab8526a02136 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-webhooks@sha256:599159dfa92e131fb92c118a7cc9afb1a2e86b63243a1e241285d7d1f88adc5e |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-webhooks@sha256:be9a3482928d9ca45118cf69af200c8a34621660587ecf10d806b023a0e318e0 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-webhooks@sha256:18f52c002bf254a8d6e44e374a620b6450b6e2b6e7116ad64e3d325cb84a3bec |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-webhooks@sha256:7e474792d373b9efc09216a6e95581898ff7207b0ccdfc40c33f94eb4ae83dec |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-webhooks@sha256:22d43469d815970b5db618640c50020627661dc91798a089200bd9c938e0a99b |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-webhooks@sha256:45c778b8734d29b11503297e7319c66387812b48cef9ea9dd797d1465e638d74 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-webhooks@sha256:732c2446fd01bb3324dc56ee4931e2d49e74fb1c609061d4bd52af8f3f85c4a0 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-webhooks@sha256:eb539f2c8363cdfa9e6628596ac262e1321d525a2a093cee6ab9605302c9cc3d |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-webhooks@sha256:07b2aad0b88796a937c124e6131368f904c11d48352232050dbf68bd6f8d973e |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-webhooks@sha256:124bd34eafbff0682148a45bb36d6986e7016618539b723a50738a3235eeae39 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-webhooks@sha256:7ec38baea4f9862e0fc9ab14da32cf6083b5e46442892d2aefc403e991a16bd5 |