Sign inSign up
Delve

dhi.io/delve

Delve 1.27.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-fips-dev, 1.27-alpine3.23-fips-dev, 1.27.2-alpine3.23-fips-dev

Index digest:

sha256:3589c2447ae84f202320bb3543c3d201861ed7afc58cc15ccdd77bdf282841e5

Manifest digest:

sha256:a84357e008badc2d14dde5c18089da832a6d00e06a6df003e4461540fd9f4380

Size

15.55 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/delve:1-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/delve:1-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/delve@sha256:c1d0f96b13c14334bf22f83e40a79e92cfb03f3c842b29d563514e9994278900
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/delve@sha256:361b960f5e293c13e3043770c97b460b35e92e155bc00a7b644df01875e051e3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/delve@sha256:1c8c7789371a7d3e416322bb4c65ae2d9eccb538970117285f93fb2a64185506
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/delve@sha256:9cd9b24a58f41948cb7eee713997c699da262dd0de0fc23abef60d7237c4aa0e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/delve@sha256:85501c3177009b70dd715ea9e3a1af80032a35b6e66a399b727962f2bdff35dd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/delve@sha256:b7ae9608c4e2232065749a8b87d063c35b1c2d13a459abb885c54efba14b9e5a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/delve@sha256:60a7e8a08ed0573050b612143d9898968c77d5dc8bc8b55d2d2995fadfc4d7ae
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/delve@sha256:7fe01e12c618267cd644d91b96738c17cc7b90a30b32ba4dfdb8d2597ffeaa19
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/delve@sha256:fbe96c84498b2020b8c7da4bd751889cd8dc762fbc18d3a7e3099b75fd20c9d8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/delve@sha256:e084fa599b1563cb3fa4c4340e9d72e5fcf76a6c0f1fe8fced595b379d516275
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/delve@sha256:81dba71dc7604d552d509249e202d9768fd98364508f07abd471c14139fa5ede
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/delve@sha256:8e6d32bdefcfdd1f4d3606965bdc1e102ad625984424374523eae7a7579d15fa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/delve@sha256:c1eb762726840e376f05917742a24cd396a529afde98435664dea7f4a31d0ea5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/delve@sha256:b78a9487eb086de9e403ab2231d428f6c6e1b4cd7ba1ad302029b6bdc3683a60
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/delve@sha256:634a327b4d990e015bdefd4736205267b3fd2f173502a55d7b9b9e6d9d435871
SPDX SBOMhttps://spdx.dev/Documentdhi.io/delve@sha256:e81cb9778d5446ce12673171c95131d2f9908414a6925212633a094212c90b11