dhi.io/dapr-daprd
1-debian-dev, 1-debian13-dev, 1-dev, 1.18-debian-dev, 1.18-debian13-dev, 1.18-dev, 1.18.5-debian-dev, 1.18.5-debian13-dev, 1.18.5-dev
sha256:18bb853f0d4080524afef9a662b2c151b30d828c832b0d58c85329968822ce78
Manifest digest:sha256:6a20f746aba26843490f77ddbe6ff1f95889f5d859738cd1d2ebedf4ad111237
Size
129.71 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/dapr-daprd:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/dapr-daprd:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/dapr-daprd@sha256:db34a9bc6856dad7abd89589f7b508be70e32759e7f5268a3c0e9cb0d1109024 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/dapr-daprd@sha256:52efee51e6c946022ec94e7bcf831b846f13219dced617089a352cc1a8b8c3a2 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/dapr-daprd@sha256:6f7d501f5c85c3dde9d554c4eb15d9ee373614a683e0c227e01512693fcdae71 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/dapr-daprd@sha256:f5f3d4502b2f2443d2fc77e86a5eec673938803700d499fd7f0369abda3542fb |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/dapr-daprd@sha256:21317c47b8a7db026c31094f828cd05c4785dc0c20f445a15e17d8bb0bd334cc |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/dapr-daprd@sha256:6e1f7148bd95fa6abe60b3864380a067f40fe6ad7b48ac1bf7e20bb529e40f5c |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/dapr-daprd@sha256:0928996cc730d93c0e2365108207e9b51e958150f943769b34d1cedcd4bde34d |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/dapr-daprd@sha256:96d0c55e98f4b42e4149c1f35486fa04446217f2a7d15fa629de5aab2141169a |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/dapr-daprd@sha256:bd2dbe1cdbdd18b0ab50a2902c4e3df1ac62b5f451037e3c32684bb765725a37 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/dapr-daprd@sha256:0531f43c144cbe698e23b65e3fda86f0e65e5ead7136ebbdd2a73d72264d7473 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/dapr-daprd@sha256:9c4ff885cb75a01458f381aa808d1cbf805094f2232e861513de2b6e1dbd5577 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/dapr-daprd@sha256:6d5b2bb8d314f38c678ec40d434f6aef32114adffd3b6b5436ef7680f59e04b6 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/dapr-daprd@sha256:5e0107115dc9cb6c19014e8e932fe2ce76ce744b187dc7172fcb28179046016c |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/dapr-daprd@sha256:e58ecb64971656b0769f6dadd879919a802b1bfeb3cf8b921967335059658996 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/dapr-daprd@sha256:bc102d82753808b81cc9ae8acd40218e650f66fb39852ec9eb7c379f01c7d364 |