Sign inSign up
httpbin

dhi.io/httpbin

httpbin 0.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

0-alpine-dev, 0-alpine3.24-dev, 0.2-alpine-dev, 0.2-alpine3.24-dev, 0.2.3-alpine-dev, 0.2.3-alpine3.24-dev

Index digest:

sha256:376f55af6a5361ec4f2eef1cda8d506c0b14091872383032de671c76fca5f68e

Manifest digest:

sha256:a4d0ff6139990c56da7d94eb06a455dc843e67eba29e66efbb1e8486cbf00242

Size

31.66 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/httpbin:0-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/httpbin:0-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/httpbin@sha256:6d9e9b529121a8ffc9d73ec519ff80accf29727dd5671a101d5af084d0728e7a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/httpbin@sha256:66fed8c7b68dcf938eca41bbb9838a1dcd4ab71994a16ea4a9784de7e6433b6a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/httpbin@sha256:fbcc8a8f549595756506381e8acdb650fe0789be6ac2b6894ade38611c2486bf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/httpbin@sha256:df5acc7675d7f6d390302aa0c87890ce66b5b687cf6bb620e535afdb6686ab76
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/httpbin@sha256:a0424843e53404b6c1de6817e258811d63bedb3af43d7a712692eebdf903de89
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/httpbin@sha256:dc3696ca508552f2fd0b4bffeb6018df2748f913cbb8f9462d0bbb22c9a4645d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/httpbin@sha256:6e30c12022dc1a1b8446941baa4825aa4d66bb67b6bc580114bf0d7e53b189fa
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/httpbin@sha256:97d0e335b7b508bd36b6ca7664e6de3fb62ccd1900e99a76e2e4e4e8ce953a3f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/httpbin@sha256:4b0a4e1ffde1938258b4267de3f028be9428062cef75abbad0e6f415329c0f35
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/httpbin@sha256:f4759c44d1d076a3a3ee68214d2f0d5ef24ff5b1248a9b0f956762019949c0a5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/httpbin@sha256:cb6b3a57f3e41aab65dbffedd14e1e769213f5c28c5e383a554db2feb4fe861c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/httpbin@sha256:11098b13e673ba89d2c7e3775c809c3c9b4a2d421597959f02a9882dbb20053d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/httpbin@sha256:9bfa971533b91aa01b27fd49b268d416b04292d77fb49174d9adab9fd48a55b2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/httpbin@sha256:dcfc189e1192ce5704ac08a810e3ae77ac97590fe61aa0bcbf2bd8220f3a0a4e