Sign inSign up
Dart

dhi.io/dart

Dart 3.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.13-debian-dev, 3.13-debian13-dev, 3.13-dev, 3.13.5-debian-dev, 3.13.5-debian13-dev, 3.13.5-dev

Index digest:

sha256:48c8eff76093430928992e30ef3a5f584ea88411f0b343d25b433b2f4ce5376e

Manifest digest:

sha256:e48180ca008134063f45118a0d19448c742e920323b766cf8d2d1033e9791ebf

Size

217.08 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/dart:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/dart:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/dart@sha256:06805686284945b40d327b0584bc1459dead9b78bb41decea9611849e2d1dd1a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/dart@sha256:67e9a33648a05b285c757495b774b6d86ebfdb0b61fe252d57b774912b9f5dff
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/dart@sha256:89b1007c1821e5935513cc483fef09cc7d6607cacc7ad62f6f7e54471e03c239
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/dart@sha256:99e2c5ff055f27265e7a9b1c473b271ac3ee0f81e412b33a7b9be090cc491b31
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/dart@sha256:9e80ea3451e502a2592b34824c30b7645f082d64c3963c5c437a1ee19763211d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/dart@sha256:5501c15ec796802d654ad566c690f38796e795e7cf8a37ab3bffdbeb161ff324
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/dart@sha256:f556946bbe7aca086829b9e877836439b2f02e5da61d7e903830c589377e4691
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/dart@sha256:ac8baff086322a1ac2d51a2f2e7357fe3dbb2508311fcd8f210a3916dc5fefb9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/dart@sha256:f2584f40255919f8d182f454ff5f998dddb23449dc36fae574815e2a80ce5694
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/dart@sha256:609f4c43cd3dacb07cc0e519908396e98c92aac9c833c63173fb2b1acb448658
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/dart@sha256:9b0051e7df0facb849e587256e0fc9503fe37552db172b961ceca81404349e12
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/dart@sha256:f2d5b0b3c9eff93c592317c51ea73b02353593912099e72eaa9f56d7179c909e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/dart@sha256:0c174808660fe3ea9b78de6739b5cb456aeda4747845d922d50e4c6493b2bfe6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/dart@sha256:1a211da9c0aa6af1faa2a2ca5d9bf03578e91bafa3c5ddb8b96a801323b1ad19
SPDX SBOMhttps://spdx.dev/Documentdhi.io/dart@sha256:7329d836411f5e541c41d9ac7824a26d9ed3158d3d311a6049bda182f9475b47