Sign inSign up
LocalStack

dhi.io/localstack

LocalStack 4.14.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4-python3.13, 4-python3.13-debian, 4-python3.13-debian13, 4.14, 4.14-debian, 4.14-debian13, 4.14-python3.13, 4.14-python3.13-debian, 4.14-python3.13-debian13, 4.14.0, 4.14.0-debian, 4.14.0-debian13, 4.14.0-python3.13, 4.14.0-python3.13-debian, 4.14.0-python3.13-debian13

Index digest:

sha256:58b57a1b4eb7e6563233fb11ff3495f74f338fefd60bbd918289464e06df8ca6

Manifest digest:

sha256:7380bc90b0dfbf28b4807a21c354adbe0a7185ad3384cdaacb007e0f51610629

Size

125.71 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/localstack:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/localstack:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/localstack@sha256:a26e28b2ccf7506203e5d4f9a869fa8224e149af44e3af7c1c877708b5cfc45d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/localstack@sha256:e91a2e312266323f1068635679fa5cbc72fac1490afebd78d561c79980148c85
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/localstack@sha256:07b0fc2568d0e2662a531679b1e5cd1430ba4da3422ca354a99ca56889d5b35e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/localstack@sha256:5816d973e054c7edc4da2198bbe63013077611741f97f455631c48bfd35b9e10
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/localstack@sha256:6449cbe2fc5fb05e253eb2a3619488f3140ebde5498c75eda1fa4196e45c9a23
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/localstack@sha256:001ef0de22db97355040837cb0c7281084f6050a348ae6231a5b21e65860f9be
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/localstack@sha256:ffb96618b48af68071b691b83971137b509c16c65527fd9e0bf78ee22c30cf4e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/localstack@sha256:f33cfdb8824fdd22a721a95157cfed0d86caac965be2c51e1db5c268f0854735
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/localstack@sha256:8b6a045346848d6dae5c1023190a57a797e4efa1e3418a6fd3747dafd0815026
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/localstack@sha256:e16d0def57ebc9d26625a76d6e0ae0da15c9df4bf668d43d139e4ed44a0a68af
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/localstack@sha256:5aa9003fc20124fd9caaaf719458d7598ee49b1ac9b4490a9f22a86bd6ea8de9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/localstack@sha256:3c0f91684bc7be0aab874c77afc221f4d507b75d4ca71f06da3076a6210f11f0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/localstack@sha256:3d96ba27a68f97f600780d92b35d4b154f9583812f919a64f99a893f6c9a03aa
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/localstack@sha256:aad4324cefbb7285f17ac445e84bf15d02087d21f39757446108cf93ab52e5e5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/localstack@sha256:249a4151d40310af95d0b79404e59f045d3d94a472d333234d00241f0b2e351d