Sign inSign up
cert-manager-startupapicheck

dhi.io/cert-manager-startupapicheck

cert-manager startupapicheck 1.20.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.20-debian-dev, 1.20-debian13-dev, 1.20-dev, 1.20.4-debian-dev, 1.20.4-debian13-dev, 1.20.4-dev

Index digest:

sha256:75380f90dbac78a92397b0efc099e3c8438a325bf98459e038ee855049eee343

Manifest digest:

sha256:b7f367c0066bd0e860dceff1b1dcbbd7fa84061d7a4cd61d208bd24c0dcb5800

Size

40.49 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
1
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cert-manager-startupapicheck:1.20-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cert-manager-startupapicheck:1.20-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cert-manager-startupapicheck@sha256:8c28c32f4cc3f8610bf3755786a15d511ccd253269143ec5fce3e86c5e105097
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cert-manager-startupapicheck@sha256:540a0e248b62515eca10673fa5dbd796e266a4dea872eb80d3079f8b2009bb3c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cert-manager-startupapicheck@sha256:f6f1fc90be5e14c3c86005edc189f32ef5d0102c4b20a33ac2c2af390f7be375
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cert-manager-startupapicheck@sha256:5829a35586e0a74cbfd3f9fc6f312cf7d81ec3a67dd9a6d0f2ee3b61d6fb63e1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cert-manager-startupapicheck@sha256:f886b6217feac69e65a6be9e313a8d4aff7414adf39bae2652c288825da68dcd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cert-manager-startupapicheck@sha256:9a3edbe5a9bff8c3439cb3db11231199e7f3e64d689e9723ee045865e797fe3b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cert-manager-startupapicheck@sha256:f929e848fd21c5147433b7ef236a0ed4481b3fd4aad630fadd819a12443b9786
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cert-manager-startupapicheck@sha256:4d2fd6af301206ee40f279897dccc779f0ea8238628390ec4febaa29b2a41db7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cert-manager-startupapicheck@sha256:1d7b46e4406c8cca4543cc33e433cc6590540375711c4b7bcd952c576ff241a1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cert-manager-startupapicheck@sha256:db5c9382fc98981078ca443d6eed483f6cf396b0964044eac0020690708a8e7a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cert-manager-startupapicheck@sha256:cde4eae0444aa940871f31571957b747dfb402449c89e68d2215a2601654295a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cert-manager-startupapicheck@sha256:b2dc72fba367e07924e9764f35b8106e210ed0b0db95aa75b864545086aec69b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cert-manager-startupapicheck@sha256:f972847de481c798c57ffabeecc2cb0af82166336d158331daa37311a208496f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cert-manager-startupapicheck@sha256:cc33ace3b648bd56a159a8c4ab4ef8159b7813bc2560c4ec1169a28fbe3650fc
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cert-manager-startupapicheck@sha256:1b526f7772586dc909328f810386aa88522cb9d8fd1a907ad49f105bf634130e