Sign inSign up
Kapacitor

dhi.io/kapacitor

Kapacitor 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.8-debian-dev, 1.8-debian13-dev, 1.8-dev, 1.8.7-debian-dev, 1.8.7-debian13-dev, 1.8.7-dev

Index digest:

sha256:3e966120e324cd91f571e57f122eed65f59f31d7a5a40e9f440e7bb005e40fef

Manifest digest:

sha256:036a20e3dd6129ddb7a30c3732c6169314014c46ccc6140fa4b7adb761dcdbe0

Size

104.01 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kapacitor:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kapacitor:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kapacitor@sha256:c7e8aa3415baec6f65cac82eb9fcded558813376c6379568b92a398b52695b1f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kapacitor@sha256:5341c0d5474fa830c69ed28775dc883bbf4f97ca9874863f4837cb97a3e6fed6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kapacitor@sha256:7eb65678ef5b2189238e9741f70d821b00e70d641f10f0aef3699d7c7ea5390a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kapacitor@sha256:8ae0a2ca270492823711e62d7e6437e79c29d020556a5b4468ec8af12aceb302
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kapacitor@sha256:688280bf685ee737a3f5bdeb239ff5028da5b1c2c93f8c2da5e16e1ec76c2b22
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kapacitor@sha256:82490de0343886f85de5e6d618e52368491a21c3e26cd2357eb2c5ad7b9d41c3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kapacitor@sha256:d4deb19a435003d82168ebebb0973806daed1774f70daa4c24e202d19cbf36ac
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kapacitor@sha256:863871baaa7506a097e34aa29744633f03da38c3b6b78cfbb426bb8453663fbb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kapacitor@sha256:4db5f90d97c31226df452df979fa9b51ab031bf9cdee4a6386a547df77d5a29a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kapacitor@sha256:f684f04b407f872aa6182a7c0f41564c60d77da6fe1ed5a99ad99827a114ce73
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kapacitor@sha256:41b3f1177f43babcf06df87aa2a75c0356ffb677f1bfb3972a1a1dfb8410378c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kapacitor@sha256:6c720bec9cfc0b50d0ed6b8426bd124c55f6b75910ca1969096a02f67d3495f0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kapacitor@sha256:0559863789161c322f040ef1b17ec00fdb60bae33262c85c3217abd01d999fbf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kapacitor@sha256:dd70ff8a5bfbd022a3a69a072523c1944822e7b20b3c31b7c76dbd9e3f66ec25
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kapacitor@sha256:aea185620601353102afb53ba438f90a2a50e4381a9d8b0d7653ec232ed0a855