Sign inSign up
regctl

dhi.io/regctl

regctl 0.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

0-alpine-dev, 0-alpine3.24-dev, 0.11-alpine-dev, 0.11-alpine3.24-dev, 0.11.6-alpine-dev, 0.11.6-alpine3.24-dev

Index digest:

sha256:6738f6c04f9e995f1de2312fa7a55c785ed4220c48d5df9f111246025422e86f

Manifest digest:

sha256:cc0e75726e0f32c83fe68e3a4a1cede5ac7f2fc9e9ce1993e5abb9dc9265163b

Size

12.17 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/regctl:0-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/regctl:0-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/regctl@sha256:ca5f53d17b6fb76daf5483ceeea6f56b91c7fc21656bc8400279bb53a27c79da
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/regctl@sha256:aabd0633c21e59dee812e414827082f148778e83dd7836a408e128910336ef52
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/regctl@sha256:bc9555b7f20854b01fe82c0dd124f253c486cab3adde392455abdc1fc0e1045d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/regctl@sha256:0c125ca8c225996d17191e658e0bb863ca79a09cfb5aef7999e1af63223aaff9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/regctl@sha256:f552d960f6d0e7d81d1897b691a909bfcca7d699c0800da153f800b8606493bb
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/regctl@sha256:f7929a39fd282eadce15614f9abcbe5bc88f843ac4dc22468d77d0764a47d195
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/regctl@sha256:d04336f1a43e2ca1b0066c38572bdb9a6e789b9c06982d83b22ba20268f97d4c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/regctl@sha256:26087131a2a034de531fbd91a4dd739b1921b987aaba101182238a7770ec5ce0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/regctl@sha256:531640bb43f9f419272adce7408d43f656b2f9a86e76fab95bfa119597fda114
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/regctl@sha256:7f10328296ee3156c3ee1ef69bee2f1d897de923edd04f48f4512108527798bf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/regctl@sha256:3c510a660a9e6b129ebbcf1422e02762220d0aebad6a05b24790df9153a39a38
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/regctl@sha256:51d4ecc931a62aa319183d9a55738161d818ce924334b91964a3c49911ea4fd4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/regctl@sha256:52811a96b0cc148c088f3361b2fe026ef04039d47bda1b49c712d29a3666d898
SPDX SBOMhttps://spdx.dev/Documentdhi.io/regctl@sha256:2f33ca80df9861df84a65ff3d476b85a8f6719952ddebf2166aa50721de2ccbd