Sign inSign up
httpbin

dhi.io/httpbin

httpbin 0.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

0-alpine-dev, 0-alpine3.24-dev, 0.2-alpine-dev, 0.2-alpine3.24-dev, 0.2.3-alpine-dev, 0.2.3-alpine3.24-dev

Index digest:

sha256:ee63f9fd35ca54e00b20013ed4ac19b3abc29c468d436571aec1f180e5ab41af

Manifest digest:

sha256:a426b204c7b0cd53ba2c05a3a6411f2863e789d7e07d4677e2cad60a9d54920c

Size

31.66 MB

Last pushed

2 days ago

Vulnerabilities

0
0
1
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/httpbin:0-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/httpbin:0-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/httpbin@sha256:2fad253a11cbc586a9ef58a5cc4f302b0aa249f990f1069cb1278185cbc6b465
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/httpbin@sha256:34a7a7fe0bcb6c9a9a58c86f56c3e84f3392384a88343557f6094e6292062c39
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/httpbin@sha256:db0630e25555f83bc76306c1d46eacd7d2629f5246923d06766120db332bbbc7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/httpbin@sha256:dcdf0842b5aa5e56f1d5e3fcc7765d7569632688d3103afb5adcc762917ea850
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/httpbin@sha256:c1e142f7cbc680e0880ed8e564640f2c273e53b34132f6c7b11ff309efbfaf18
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/httpbin@sha256:137f0dcd4abef9a5d97395bcfc1bdd6acc56ba89c64b3b2c2b759674514e6aa6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/httpbin@sha256:8428e20c7b72e4fb23edf934d9be880bddd886a6dc476a5e290d4db7f97c1c45
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/httpbin@sha256:b011ffe4dd5ee1da422d36434ca7fbe8d12b0a0fd4a4a447717610be067b791f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/httpbin@sha256:0a3a7a5f1a67318aca3e642a376016bb228c15051e7d706fc96686a11f1a5448
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/httpbin@sha256:48aa9db738f92267e59c84bb47dd9d1d6f9ff2ee367c842405044827dd25f2f1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/httpbin@sha256:c8f6b480abb459796b921f4102b07bbb98e05951ed0f6e1beac20becc710c4b0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/httpbin@sha256:fe6503ad8eaf0e745064a435d825342a502881ec8e46924c2c929ee4469b9edf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/httpbin@sha256:2a9259527cd9d1019faef72f412855547b70e79beb2f726a9b1d3ad189b15377
SPDX SBOMhttps://spdx.dev/Documentdhi.io/httpbin@sha256:e8bf46556996d66ef8bfed8382a2c5d18c482d679e0dff0ea9feddf6b91a94d9