dhi.io/httpbin
0-alpine-dev, 0-alpine3.24-dev, 0.2-alpine-dev, 0.2-alpine3.24-dev, 0.2.3-alpine-dev, 0.2.3-alpine3.24-dev
sha256:ee63f9fd35ca54e00b20013ed4ac19b3abc29c468d436571aec1f180e5ab41af
Manifest digest:sha256:a426b204c7b0cd53ba2c05a3a6411f2863e789d7e07d4677e2cad60a9d54920c
Size
31.66 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/httpbin:0-alpine-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/httpbin:0-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/httpbin@sha256:2fad253a11cbc586a9ef58a5cc4f302b0aa249f990f1069cb1278185cbc6b465 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/httpbin@sha256:34a7a7fe0bcb6c9a9a58c86f56c3e84f3392384a88343557f6094e6292062c39 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/httpbin@sha256:db0630e25555f83bc76306c1d46eacd7d2629f5246923d06766120db332bbbc7 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/httpbin@sha256:dcdf0842b5aa5e56f1d5e3fcc7765d7569632688d3103afb5adcc762917ea850 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/httpbin@sha256:c1e142f7cbc680e0880ed8e564640f2c273e53b34132f6c7b11ff309efbfaf18 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/httpbin@sha256:137f0dcd4abef9a5d97395bcfc1bdd6acc56ba89c64b3b2c2b759674514e6aa6 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/httpbin@sha256:8428e20c7b72e4fb23edf934d9be880bddd886a6dc476a5e290d4db7f97c1c45 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/httpbin@sha256:b011ffe4dd5ee1da422d36434ca7fbe8d12b0a0fd4a4a447717610be067b791f |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/httpbin@sha256:0a3a7a5f1a67318aca3e642a376016bb228c15051e7d706fc96686a11f1a5448 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/httpbin@sha256:48aa9db738f92267e59c84bb47dd9d1d6f9ff2ee367c842405044827dd25f2f1 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/httpbin@sha256:c8f6b480abb459796b921f4102b07bbb98e05951ed0f6e1beac20becc710c4b0 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/httpbin@sha256:fe6503ad8eaf0e745064a435d825342a502881ec8e46924c2c929ee4469b9edf |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/httpbin@sha256:2a9259527cd9d1019faef72f412855547b70e79beb2f726a9b1d3ad189b15377 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/httpbin@sha256:e8bf46556996d66ef8bfed8382a2c5d18c482d679e0dff0ea9feddf6b91a94d9 |