dhi.io/sbx-templates
droid, droid-0.238.0
sha256:9e6d7b42876cca1645daa176d20effc05b8f50956e0601d0672338c918e48aad
Manifest digest:sha256:ce66bfa20ba29f433eda27792866a54accb77ce866a3a46b54ccf97d34f2f0b6
Size
490.97 MB
Last pushed
1 hour ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/sbx-templates:droid2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/sbx-templates:droid --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/sbx-templates@sha256:b2cf05260364620a623f46412df8f4bead761c0a57b4ccddb44311095efc61fd |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/sbx-templates@sha256:dc872d68802d06cbe946ed37c9485841c842e7aeb7a714116e7f1b197c4d4b45 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/sbx-templates@sha256:24f484c244986f8a4511fe63a6ed914259c7d6458b8d8bc7f7238f0d20f2afcc |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/sbx-templates@sha256:5019d92592200743625674185bf165991ac22bc62cb4700b98425c78a5afb099 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/sbx-templates@sha256:c638fe726d54285d034e3e7a62f1e010d396f0fbc29c780219df5b821a524e83 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/sbx-templates@sha256:8b315873169a767f543b9b00b536fe6779ae34730e753658a2570db37532e6b8 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/sbx-templates@sha256:dd62e5b3cc7bfd2680bd500f1bc086713a8f430105f7fc6b5efa3b46dd9cd9f6 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/sbx-templates@sha256:0207114307b10ca1f0744129046a9354728b6f5159de12e72234bd188db4da66 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/sbx-templates@sha256:4e598d0cd065c4e6ac2320c15175a51601a7d0d9b2565d09b3c7cbbe2182c213 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/sbx-templates@sha256:b9d874ed412a88126287b60bbc1eb42d013014c40fc2869c5dbeaef7ca8788fc |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/sbx-templates@sha256:f4d57d6fa1ad278075dfc0100f43062d8b8938cf7fd4d852e06f74733ef75591 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/sbx-templates@sha256:cb4e33865f787eda1421d05795602caf3019cc49778e1307e5d8991d894d5ee5 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/sbx-templates@sha256:295fc4c0fa9c644713a11938a0780add5c81f01ddf59e4b2d076017bcb27102e |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/sbx-templates@sha256:ec021936363c43e43b60ab8cd3693ef47a41386bd2d00f9cc3b95e2d8fcfaf76 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/sbx-templates@sha256:af6768cb0ff81b4f94780764d971c5a6b87dd0f183ebc75f68b1f3ddf1692043 |