Sign inSign up
Ory Oathkeeper

dhi.io/oathkeeper

Ory Oathkeeper 26.x

CIS
linux/amd64
debian 13
Tags:

26, 26-debian, 26-debian13, 26.2, 26.2-debian, 26.2-debian13, 26.2.0, 26.2.0-debian, 26.2.0-debian13

Index digest:

sha256:cc3a281eba6b657561878971d5f09e962792e8ef0ef19eee7674250a17268a66

Manifest digest:

sha256:ff9a5b5d41dbd7ecc57062822a76c43463c0170e969572d3704e4646e0d7c748

Size

16.82 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/oathkeeper:26

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/oathkeeper:26 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/oathkeeper@sha256:81432e8b0eb4441c984802d68ae74cc284015832993bf8edf665d644905d611e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/oathkeeper@sha256:2c6e60c8dce9828c610cf1074595921e397029a9c00ae696c84f1bb7236acaa6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/oathkeeper@sha256:24e4edd9b96feab4467a5e8d264fa06d87416a714eff1dd2c585d7a1eabac6bb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/oathkeeper@sha256:cedba1db8fbbbe41883d2b85a80123e5fee05ea0631816e341839e93e88f6d67
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/oathkeeper@sha256:2078fb2a677eb77eab65bc168039b0aec51e345cacec14274862bcc9e51d73e3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/oathkeeper@sha256:4a3a149d0a1ede5528b52d120aae8f6bad7d4a39ec97b3e3024807f9b4ce5648
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/oathkeeper@sha256:f3f08b8674e8b4d67bde847f85fc6e2e106d28f0ac86254d466ec9f3550825cc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/oathkeeper@sha256:2b94aec646d40865f836e1059c7c9efbc6bea0aee2f92c899316d086881f0784
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/oathkeeper@sha256:1acdff8b669f548d6771970ae0ec2304a94f1c5ac5bfe39ec340e30c9e0a37ab
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/oathkeeper@sha256:79a5a09c7c218b46049cfd41af5b1039d6dd6cf1912a73a525a8a7644ab2e604
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/oathkeeper@sha256:d7f080336edc8c1260c18f8ee9d32d21e6b6465438ab03749698815ee3fcbcae
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/oathkeeper@sha256:e1a4e75d3ac3b706dc9fd3be5ad59ca8a24c08b6eaea3dbc6ab9dcf7722e9f60
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/oathkeeper@sha256:090638f46eb28048109cd0c1d4874ed407744bd289f18e9687ccc2d82982b50e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/oathkeeper@sha256:6334f0dc24a5ffeea4c03e7ebd4926f805122406df685c5e14178f5452fdc8bf
SPDX SBOMhttps://spdx.dev/Documentdhi.io/oathkeeper@sha256:4799025fa7e0b209f73db5deb3ce4d2a50bd8b1d7762f5f5720ae856453ace1f