dhi.io/k8s-device-plugin
0-compat, 0-debian-compat, 0-debian13-compat, 0.20-compat, 0.20-debian-compat, 0.20-debian13-compat, 0.20.1-compat, 0.20.1-debian-compat, 0.20.1-debian13-compat
sha256:f999e936c3feb0d296135243ebfeef5f061a62e302027229fdeca5eec2788932
Manifest digest:sha256:ecb0b808f072c58a0ed95c83c9cc243538bf02f4ea900a5ca598a28cc9ced167
Size
53.75 MB
Last pushed
4 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/k8s-device-plugin:0-compat2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/k8s-device-plugin:0-compat --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/k8s-device-plugin@sha256:03d7aac2e9ae2df040ec42d8041f73eeb43f1d5810a569f2681558a13e4a188b |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/k8s-device-plugin@sha256:6d25aec65b458af67f67ec6e20f2cd6890538c13e478e0d5d021f7f34adcfb1a |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/k8s-device-plugin@sha256:008f4034d64c22ed9ca80dc0835488eedc955c67191c67380a69d2a244044e39 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/k8s-device-plugin@sha256:f917da6975143072687944325a9c1f20ed5a841f304fef90919a0b79f359b38d |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/k8s-device-plugin@sha256:efcb403e1098081a4b09f1da2473cd8fa5840267c9941d93f15810fc65e5914b |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/k8s-device-plugin@sha256:79fe5abfd7ce2e55b6e87e391ff87d4312c1b7bc0269635c8537221239b52bba |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/k8s-device-plugin@sha256:b08bd13b7f07ac5ad65d8af1ff5309fb572a6a2ae0369074381a08084b380555 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/k8s-device-plugin@sha256:23cf7f48786f512cf5ffdc5a981d6ba638ac24b6bb5a80a71fe25cbd99891b17 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/k8s-device-plugin@sha256:a52bfab04ea835c8fe62621deba80416aaf30391e1322278f32515db81326bb6 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/k8s-device-plugin@sha256:ab6415d7332711c05ab8e44958bd4019acd1462c6cdd87c37ef9a3ce943f56f8 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/k8s-device-plugin@sha256:823635532fc21763d61fad2b709ff5b6278eb350a1e804cae61c05230bfa42e9 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/k8s-device-plugin@sha256:d826fe832a233d00f241ef971e0564174c4656ccf3eef91e846d01e651e41c2e |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/k8s-device-plugin@sha256:2e076877ad6f6c525a874e1354e92477be21245b69180bd938fc51f78ed1a580 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/k8s-device-plugin@sha256:50c665505c1f3ec69247a09a5d13f70881b0e47c7ea3ffd64d297938ee15b9c6 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/k8s-device-plugin@sha256:3fa6ba7ed4ec2c5a5dd4ef136a8ec52611010ab7017d3d44289ac51d4ea0ff31 |