Sign inSign up
regctl

dhi.io/regctl

regctl 0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

0-alpine-fips-dev, 0-alpine3.24-fips-dev, 0.11-alpine-fips-dev, 0.11-alpine3.24-fips-dev, 0.11.6-alpine-fips-dev, 0.11.6-alpine3.24-fips-dev

Index digest:

sha256:c6a88ded5afdd8353ed6f1c4c15fddddff78b401090f83c2e1e6b664120a5f70

Manifest digest:

sha256:2e3cf2da3ecedb18bcbcc9f6b9cec774fdb8c16043f27de792d80febb5401ed8

Size

13.00 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/regctl:0-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/regctl:0-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/regctl@sha256:5536319143357fa356101a48510d85caea069641acc71b83bca434411616c73a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/regctl@sha256:9266a4c3abac342e45fe63b6bea215c6729292946688890785008c3cd174c5e3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/regctl@sha256:0bdc12db3889e942df9b2abb40a1178b877b56772e174f99b4951876b2efc53b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/regctl@sha256:511317aabc5381a751f1105c6e7c238d4f822c59a1b898225f97dd8166cec307
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/regctl@sha256:bcd1280ec4f65911ec406a3a3a7c4df4a2b3373f38c5a95cf6ad16aa013a8a09
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/regctl@sha256:7c3e230131ff60330fb8fac953adf294ae1dfd9519783e349bc1af1d3f4d3668
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/regctl@sha256:a18e7874d865d50c26b07ef5f324ecb8a62fa35888d37cf10bee7ee6cd7b56ab
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/regctl@sha256:494ab15da08e1d54715290dd61b8ac1621762f72216cecc53838897ed35ce25a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/regctl@sha256:57423249c553b8c3c99a915ab1fff0c2112bd00df47c86eab440ec18421251d0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/regctl@sha256:cba4bd490dd9374d08eeea4f4ae402049ae2ad2674ebdaa49571faca8a3befff
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/regctl@sha256:f46f42f015fb06308e05ad8ff7b3de11c507ab736e3aec5dc1562ab266ff462d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/regctl@sha256:5f870eca11f4ebdc2e1872c45ce05b3585079b26af4d5f027caf61387b33171a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/regctl@sha256:c86531756d73c388b68ad7b2a613795d0b8f38d62f174e8857a83f5498e3b3b0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/regctl@sha256:eac7303d1e54295277f4b705591feb2b544cc36c7a09e93db6e6259f4dec9f1a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/regctl@sha256:e109526f970c9b305e4b1658a938dc6ba894a0ac946cfa1edede350732e571ea
SPDX SBOMhttps://spdx.dev/Documentdhi.io/regctl@sha256:3b73d0328a3d7e781a0dd26d3afa2068e5baa6747c6046bf0818c8020eb4d4b9