dhi.io/k8ssandra-client
0, 0-debian, 0-debian13, 0.9, 0.9-debian, 0.9-debian13, 0.9.1, 0.9.1-debian, 0.9.1-debian13
sha256:29b130a5b858c741955af9b437cd5911866204af357950417f0d1fd50b3c497f
Manifest digest:sha256:2a64d479b74dc4fd1e6b4078c427086dd88dc8a3f5b92cc7929e0221d48df1e7
Size
60.53 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/k8ssandra-client:02. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/k8ssandra-client:0 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/k8ssandra-client@sha256:2048ed82ea93ace88c0a17aaa0059debd94207d8ac2efb305e887514c0462147 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/k8ssandra-client@sha256:ebab3bd80eef4ff48a293d829b288466c9e9c645c0c58ac449ebc89ba46f2304 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/k8ssandra-client@sha256:f64f46477c25a28b1be44760c8be5b56a9caa7803711c066264f98de4ae251dd |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/k8ssandra-client@sha256:ea054e10125ef3290e749404fb712ca47f0b373a568cfda77b8e0d553672cd3c |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/k8ssandra-client@sha256:ba7df37f93234383355b2d518af1e587d50b27344b9a53a36537df5857aa54be |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/k8ssandra-client@sha256:8dabeb5b89977f53b75230e34c165044ff1073801a298c9422b7de331b94739f |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/k8ssandra-client@sha256:2fd194d639e828204416bd65be025ce43cd637ed17189642cf7189829b1c8dc5 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/k8ssandra-client@sha256:0c44f0a04810f624f98bc7bdba5a2b2b317f81ea7d34914dc912ddfba98da6f9 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/k8ssandra-client@sha256:3da94b16bdcd7b0fbbfca07007195d786351b3e62708f614215d309272682dc0 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/k8ssandra-client@sha256:73916a4ff7ae66d23f966a4ebebb2ea8d389686970ac8a9f338ba826d9b7c932 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/k8ssandra-client@sha256:a9b84b3727b49e1a476382585d1a4a89a9ae6c9b020459e76eeef9b84f2d242b |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/k8ssandra-client@sha256:0625dfa43eebc6789ae69645b557bd7468bdd56dbde6cb996daf0305ec674b10 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/k8ssandra-client@sha256:9d845766aee7a1831b00f76ee474e6baad91670fdfd88c8c23f5b8f279db2cb6 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/k8ssandra-client@sha256:9919ca8ed59dbcdb7ec41b9e24013f1a57185cd2bad3090ba9069dbfac9cd652 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/k8ssandra-client@sha256:c191b5c5dedfb8d26d36ac237c04816a301ca1a22ea67cf0c27a5729b120249a |