Sign inSign up
K8ssandra Operator

dhi.io/k8ssandra-operator

k8ssandra-operator 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.31-debian-dev, 1.31-debian13-dev, 1.31-dev, 1.31.0-debian-dev, 1.31.0-debian13-dev, 1.31.0-dev

Index digest:

sha256:a1be3ef93b4f59b6c4c92a575f97ff0a27362ee26e47555e02bf8d07f0bd63d3

Manifest digest:

sha256:ef70a9bd042b6dfcc612c817b967b38ba9aed24278d113e825aff9fb6c3a96ea

Size

49.82 MB

Last pushed

21 hours ago

Vulnerabilities

0
1
2
10
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k8ssandra-operator:1.31-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k8ssandra-operator:1.31-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k8ssandra-operator@sha256:90dee9c6a8f5ff8de4c6a2bea9086397be685a049008bd98be6ccf8fa7354330
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k8ssandra-operator@sha256:3f74c5b0b4b197b1780651ea8c8896a77cf600e35a130cc47b4f42a095d54706
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k8ssandra-operator@sha256:02b9d66490665bc988e28338c7dc7010883564d9ee26300b066c67f6b7b79dc9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k8ssandra-operator@sha256:26fe9b081dc4b83d248d45a0c85df3213052ce158f9ee756e87f2d3f7f029499
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k8ssandra-operator@sha256:0064f60981f1d479d3fc3b7d4282c33d6882c733cdd65029b16361516d340630
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k8ssandra-operator@sha256:df34ddec679082af47450b5b270e59df3881efca226f28e31f769a6ddf171610
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k8ssandra-operator@sha256:adc8b5bf3acbbb0c4ceff34973421fd7223672448f1154a0b7db5c7f495dee16
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k8ssandra-operator@sha256:a8d41b7adf2f41102ab0029d7094d82073ddc25d07d5ad8c87b0822d1e4f99aa
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k8ssandra-operator@sha256:0bf474b42cad9cb3048647824fb6fdadb3204a277a2b093c921f5d39df49331d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k8ssandra-operator@sha256:244937de78647034cddb21cd434d6798893074fe5f07554b9d4925936686c25e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k8ssandra-operator@sha256:46931d101230639ca99d690817aaed2cc738cc4be82e4c1f647f1d3a5814bb2a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k8ssandra-operator@sha256:110693ef132b43e0f15a9ddaaf0e1b35fa563e6f6801b2c9d76e8ce4b038ead8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k8ssandra-operator@sha256:885747ba3c0eacc1ea9c87d9609777422a12e2d5834961a18df7e5661447bb08
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k8ssandra-operator@sha256:93f66cbd253463d461bf49e0ea46605dba0dc9a0bfab21e202720017f4e9fdcc
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k8ssandra-operator@sha256:1b29eb899dfed521a2b33217ac7e91662931a3259fde888e5fb70e784527cba2