Sign inSign up
httpbin

dhi.io/httpbin

httpbin 0.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.2-debian-dev, 0.2-debian13-dev, 0.2-dev, 0.2.3-debian-dev, 0.2.3-debian13-dev, 0.2.3-dev

Index digest:

sha256:cc567f0b9a461195d3c0e3ab8f71c2cdeebedd37eebcbd1d90fc4e7df77c0b57

Manifest digest:

sha256:657dae705cdbc8b52c4a8d02e61ba9b1730b1b7a08c882cbdaf6d6c36f9dbac2

Size

44.19 MB

Last pushed

2 hours ago

Vulnerabilities

0
1
5
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/httpbin:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/httpbin:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/httpbin@sha256:7cdc808efc4acca60d63b76370a245776903b2b0d6209b36410f9306935908fc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/httpbin@sha256:399525d67d03e25f13003f2120c6607dd60da9b719227f41056deb2e759ffc49
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/httpbin@sha256:114039a81fc9dd057bcb57ccc84431fa8e6b60bce1e37f62f5f81c1efd6da6d8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/httpbin@sha256:941a80168787674d1902be6434d0f75a33accb78a9ea565a33cbfdd29524ec75
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/httpbin@sha256:031e6587061f9cb800dd5732451b91065dda772c0d5882c2db6a921ab340b5f4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/httpbin@sha256:a6666cc5bae4cfe0c547f5d1807f1e294fc178b57d0f1e718c365ddef272f31b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/httpbin@sha256:3fab68918f0d7b99db5b0710aad4d5200c5ab8ab942b6a69e00d69fd1aed358b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/httpbin@sha256:5d5810def92c126995047d8e25858fb625bd25fc850081588eb5de7863d32d44
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/httpbin@sha256:125be09266ce06de41badefdef9317cd36e60f165190fe0772c932e79efed110
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/httpbin@sha256:d9a6743418f82bda4c62cfaf031c9ffe85f714abea1febdef24f93cfa39d7feb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/httpbin@sha256:28feb705f88ad7f8cff96106c80ff8eb712f70e5a793a8013c3215ba2ca223c2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/httpbin@sha256:7ddd5b132f516f3a6203390a11cb43278dd35e773139eeabde8e33e66467f434
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/httpbin@sha256:5fe9940d720227ec517586b5f68acbb630a66d1111adfdb5aab64ef253179f4c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/httpbin@sha256:d0bd46974a0e941a105c8e71500a7f46b4e91cc4e0db40789da9c66e253126d0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/httpbin@sha256:65460356fda0fcd97188b49de08b59d4aa84f9a0a290fd49a05d91ac76a936f4