dhi.io/k8ssandra-operator
1.31-debian-dev, 1.31-debian13-dev, 1.31-dev, 1.31.0-debian-dev, 1.31.0-debian13-dev, 1.31.0-dev
sha256:ae067f84ca926790c8685c8b5b3dc679be25d8cd679f15802a5e3a592624efdc
Manifest digest:sha256:e883a39f48ec3948639c2656450bc4f7f300e6f6185366b1dfe79d3f6dfcd489
Size
49.82 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/k8ssandra-operator:1.31-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/k8ssandra-operator:1.31-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/k8ssandra-operator@sha256:dff535cbcff40982557dfc6691c4d50325ad9da180f9b06382e46261d61364c2 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/k8ssandra-operator@sha256:22bb322af38ed95e1c89ca3b44b483d587d6de51f25a8009353ef87aecbdf10c |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/k8ssandra-operator@sha256:3ac3eb2d4dcd9f1633b5bd0d9cd471f815d8a6ba9b6130f277477e72551b7ba8 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/k8ssandra-operator@sha256:96ac13a4b6b8597af611a3da8a55df23cd99f6a58862e878cec870194350f566 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/k8ssandra-operator@sha256:934c409356b75c6198021e408d47c9c691d84035aa68d3958faa19aa58f62375 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/k8ssandra-operator@sha256:510b75143adfae0ad205d46266ad2efb47a858f9b660f12c5f6e43eed0e3dd2f |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/k8ssandra-operator@sha256:f9d22a51f77636a62824c4571374ad3ce5ae6dc3336bf9b05bcd5820445e2b61 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/k8ssandra-operator@sha256:98b067f5de6f9d1de99dca42a02ffc82f2b340afd994fe8b0f6cc7cd25a08a58 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/k8ssandra-operator@sha256:68bbbc520cb1a871af1c46b55db294112fc8133cea23b68eb5c622c5b778fa4e |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/k8ssandra-operator@sha256:1f04031d13f0f21988508bae618b0a18d5f016753ef0392fbce9e8e0d9198c5c |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/k8ssandra-operator@sha256:cc6a004155cda532fbc82b1ac54f166a1b8754381a3f2306c3fbe6c16d1f0e21 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/k8ssandra-operator@sha256:2661bd142ab288677a6f4b2b5cc18dcfd73cefc0ee5a7e4739faa965e359085c |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/k8ssandra-operator@sha256:3659c7b868a3840c16c00dbd9f42a6ea13ccb0ab018805576116a174750fa157 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/k8ssandra-operator@sha256:3dd6ad756555517bda4a9d2c750d43b202b81ea04164cccbad8d9296a4bb9478 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/k8ssandra-operator@sha256:74295d2364df89bf1cfd7ec2a7ceffa5ec138f22143b92a1c65f2b7b2476a38c |