Sign inSign up
Delve

dhi.io/delve

Delve 1.27.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-fips-dev, 1.27-alpine3.23-fips-dev, 1.27.2-alpine3.23-fips-dev

Index digest:

sha256:5a6ed1f943ab0997667d82483bd30e622db0c665f7b1cadd5be8bc21c3a9cecb

Manifest digest:

sha256:c2b134407ae4ef7bec601462284bb039fde8adf2962b3be12a1d604a909c0458

Size

15.55 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/delve:1-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/delve:1-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/delve@sha256:11b725f37ad749232b53613f3f8c396ec1f13f8fc9434510e29c11eae777471b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/delve@sha256:a74840395bd353bb5205fac9116fa7cfaafa96cbd5093c4489be2e7dffce5048
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/delve@sha256:9ab0414bdfb2a1edef06c8d0414916331c03c9bf626fcaa162ebb1df2604a9fd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/delve@sha256:749c3fa6c8a1f929174a1011e8859c840549f194410b477c587e5fcf0f5e5ad0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/delve@sha256:50120c595ae4b341fd81eeab2d9b4eb1ef2275996d946d44476464c52b64351c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/delve@sha256:9ff575001fff603d21b713e15aed6034e3cc55c59be10707be9bc6a1a0c5d16e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/delve@sha256:4a700c60f166f1e997ab9de93c7499e0f833f3787c949e417e2e8b72a24990eb
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/delve@sha256:484b4d7f0cc1dd42d21bd9523b1537c751529abff441cde44c1d111f0ef5ceb2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/delve@sha256:c7937b73cbc4959accb5c44ba32b829f67f66c52a6e5212b1ef14b02aef5f86d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/delve@sha256:6d166323b8f4cde1e9c6cfc799759e2abb9399e37595609184f164fe136a8966
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/delve@sha256:bae88aea1652a57aaece7a81dcc398e71789742db6bb2df75d49d4de3ca499f6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/delve@sha256:6a051fa672ac6ee8a860ecf223e3b0cc611f699830821424bb8e742e008ef55a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/delve@sha256:e43fc68d4d83b4834b1d576781f4cce5cfa847a7759774d1268e395bd59934d5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/delve@sha256:3e8b62f58404d81c9587da6a0c42c3caa47da72020818f43c9c0401ad22c375c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/delve@sha256:f6ea1431556e94be2ab2b81027426afd3bf3411a418d5b8ccd7da8c6989be27a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/delve@sha256:b81ecafa08c7afa689d728c5cfb7b09ab9167ef679a9a846de1a60cdec261f73