Sign inSign up
ClickHouse Operator

dhi.io/clickhouse-operator

clickhouse-operator 0.x

CIS
linux/amd64
debian 13
Tags:

0, 0-debian, 0-debian13, 0.27, 0.27-debian, 0.27-debian13, 0.27.4, 0.27.4-debian, 0.27.4-debian13

Index digest:

sha256:9a9be4f47ac32e7661812b23a14541d05bfa23dfe6510c63888d33b2ab888dc1

Manifest digest:

sha256:497a2e2e9de52bb85f1ff209da0f469175f9d952171fc88cb158a3d1b6f42f8c

Size

14.14 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clickhouse-operator:0

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clickhouse-operator:0 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clickhouse-operator@sha256:d88da64cc1955526cd1f0008f597c93be2ed7066f647fd726e87704d52a52e96
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clickhouse-operator@sha256:93893752f62bcb71a9b1577d66530a008c3da9b861640a7879b97a48dddcd7bb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clickhouse-operator@sha256:ea427d775d69706bbd2623719b333b2a40ba36b4cae57391dcf028910d89e829
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clickhouse-operator@sha256:9cdf17a51ca436c621e3e258eb54a277e0d699d28b3755dd8a08213a63dc8d4c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clickhouse-operator@sha256:2c55d8f0c8a87bb5e507a8f8a4df53386b5e8052a0146f80980ee1a7d4508f40
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clickhouse-operator@sha256:54e447130b4b26ecd1e0a5a4a49250b7d93cd0a8130d58af4d061e4e93747375
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clickhouse-operator@sha256:117acc48878551c4532710f023a335845a2363dbf7bee1c99ba858bfa4dc67a0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clickhouse-operator@sha256:7e057f46e5f6adebefad057fe19e98f6c859aaa13c1b41ceecee3f533c89d8ef
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clickhouse-operator@sha256:5e3fa90beb1397361c0f5a7190ece5ac1507e1bfaf3b3c8f22cc9f6b75cbcdc1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clickhouse-operator@sha256:8cf91e8f9b5be1c0550735ad38c43d31495e7203145d98b71662886d13e87b7b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clickhouse-operator@sha256:339b2712bf27a0300aec2f528aa9eaac803a685c75027a35f023afdca6cc2245
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clickhouse-operator@sha256:f1f79b3cdc7766f5d5288690138e93cdd010a8397c4cd354bd9fe42f3b5aeca3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clickhouse-operator@sha256:72553a4d303e1fbb0a857eb14ecd99c50837b8de85bc192ee637ab84c59f1781
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clickhouse-operator@sha256:b65a56bea92f916bb03b8d292476fbdfa7e94a44c2d995ca875b9095f8a5f144