dhi.io/snapshot-controller
8.3, 8.3-debian, 8.3-debian13, 8.3.0, 8.3.0-debian, 8.3.0-debian13
sha256:e8ff68713bad146f51c867b30f58875920b03af02c66c19e1f91379447ac8644
Manifest digest:sha256:58dbbabfd27e82cc98a864afec28fc877166fcc2488af3a592b393d7eb3e7bf1
Size
13.06 MB
Last pushed
6 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/snapshot-controller:8.32. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/snapshot-controller:8.3 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/snapshot-controller@sha256:d6c9369bca2af6d2a9b1c9ed4353c919703b573af8054a4a0b3866de72880c68 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/snapshot-controller@sha256:25881409c96053412c152829fdb2b5c1b1d041017de96efd3b019d44d916844f |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/snapshot-controller@sha256:192c5ad70a35ab913b416460efc29e8bd53d16aa7b0e50b2c23db10ff7968546 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/snapshot-controller@sha256:abcaac44ebc8fa52ca15b10c5b746ff5e40d5c3b8716720b8fd05f97549d8e1b |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/snapshot-controller@sha256:542cdd81253c03210a38441bd99724db8a30cdaaf6a3dac5090f487cc44beaa4 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/snapshot-controller@sha256:fd624284ffe4d8acd50a1bada4a3411caa21ef13c7d26b45c46eed577d99fd71 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/snapshot-controller@sha256:65b7a9a3f1dee509e14466c5a439990fc0d5818b6e984c2994c015a8b4c011a4 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/snapshot-controller@sha256:adccd89fdb4a471e8fe6f87fa62e2a08f44883aa772a19549de85c7696ade93f |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/snapshot-controller@sha256:67a91f78800df50dfc956fd25583b75ce19e1178553b2434e6061a219e81abf4 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/snapshot-controller@sha256:236be5b1140b64ba386d6efa5d3df3c7ad1634593a10359234954c56b1a2e10c |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/snapshot-controller@sha256:433eb22b30e26f3b59308de3cda93b935463a2516357063f17e0c6c284166513 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/snapshot-controller@sha256:49bf5b3ffe3d54edd444daec1b77c2d721930d98b1e5e5eecc8ba117d397d285 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/snapshot-controller@sha256:ff610c47bbc6f3b7c2fbae12e877dab5c229fed9f1c89adc7afc062e3fbca32e |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/snapshot-controller@sha256:ce8536d28fbe5444abfe7f0a1ea242d4fc731cdc139668363cedf348b74685c6 |