dhi.io/k8ssandra-operator
1.31, 1.31-debian, 1.31-debian13, 1.31.0, 1.31.0-debian, 1.31.0-debian13
sha256:c43dc27acaeaa0e06f89301a7c6d2344f956727517c55c887d06a24d56acf3a0
Manifest digest:sha256:ee3d80ea4dcca9292ef63f8bacf4a2dc931f6fe12273b89cd88ec95af4a55fb1
Size
13.88 MB
Last pushed
3 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/k8ssandra-operator:1.312. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/k8ssandra-operator:1.31 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/k8ssandra-operator@sha256:7f14664770b95ff8573b5032a6e899b2e4b5a1549bd874c9d230e180473fd870 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/k8ssandra-operator@sha256:f5899a3040613160a0d75a126e4047d3057cc1ec451a0f0b1d447c8e601c8fc6 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/k8ssandra-operator@sha256:0e565abaa55d6152bfec0ad6573c77d41793891bb6e365f6d6621cdab981962b |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/k8ssandra-operator@sha256:7919c4775b005ae1928a9ada9393fbddd626caca62abb31dec4689c7b82b6dc2 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/k8ssandra-operator@sha256:2706dca3ea6a94acdd1a93136c37c35646e1162a5dd0bd0fa74bbb50f238438a |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/k8ssandra-operator@sha256:03095f5ac723a81cad1d3a2b57f717dcd80229c233c9f827ac458d01b5733e0d |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/k8ssandra-operator@sha256:e0f8f37c48c8c0c8d6581c8a272302c265f4d6f8cda636bfa76894df68e532d7 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/k8ssandra-operator@sha256:c1717e932402e373322feea43e58056a69168e352b5bf7a9f4029e0e60fe6c7c |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/k8ssandra-operator@sha256:12f87633205fae3d1e77f0336efc55d9accc23e188c09fe14d0848d953c3d46e |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/k8ssandra-operator@sha256:c84b8ad1aa7e0ce35e0e61ba76669b3a3fe05355fb8c8b5e23efd1f46e7a357d |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/k8ssandra-operator@sha256:c3fa948eee2a7d1e4656b61456935825ebf6e7b8a4a0283e2308294092284c22 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/k8ssandra-operator@sha256:ed34dc20ae36b97182042e1cfdebd8378bd01fd1397250219ce8510fb33fff03 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/k8ssandra-operator@sha256:1a26b97f5ee0267d4f20cf438201162a623e48d9e1e1ce509d899635c9f81cd6 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/k8ssandra-operator@sha256:c69b71fc8e4708d06117a8c2e9d17028f8909e7d04e2de2f895d721e5fa81efa |