Sign inSign up
Snapshot Controller

dhi.io/snapshot-controller

Snapshot Controller 8.x

CIS
linux/amd64
debian 13
Tags:

8, 8-debian, 8-debian13, 8.6, 8.6-debian, 8.6-debian13, 8.6.0, 8.6.0-debian, 8.6.0-debian13

Index digest:

sha256:2dcfaeeca2e6c81a7eb4e70a28bec36c5824d030307103486757092f137608e9

Manifest digest:

sha256:0b46f78e2e2e6e2f254c5190064850b396e041b9752b541e2b8f96db277b0804

Size

16.57 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/snapshot-controller:8

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/snapshot-controller:8 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/snapshot-controller@sha256:57d7dc6a9a8005601db881ac451e54dab0371955c4569722d597aec2c166b979
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/snapshot-controller@sha256:9fba70470116d9942226cf137765a97fd8e4548e39dded63a627d739e63c175c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/snapshot-controller@sha256:c618a9c5782ea5566a609cac99dba641da7fbb2f95439cb1e03be9cffb9ad12a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/snapshot-controller@sha256:f686d00ff98cf349e387d9936ed63aec609863ac9e8789ed9affc7bb42b53b22
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/snapshot-controller@sha256:97f3ca45a5ec6ed75957b328773e14de305ca1377fbed66735468a9111a8a17a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/snapshot-controller@sha256:21f78ed997a59d0329f4c9eef6a3daca8fdd1d24ca32f72b725746a0e8dec164
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/snapshot-controller@sha256:79c4ac3cfd1a67c109ed61c305a456a2c41145dbea46e113df6ee0e0719e7ff1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/snapshot-controller@sha256:5b8875201ab5e3e946fb7e9251ef42ddd15d32fcc46a34d56e3c6c0945494e80
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/snapshot-controller@sha256:d72b791717bdba2b5b2b752c3ed4dc928233bf048e07805672916784effe00d1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/snapshot-controller@sha256:78c5b3298b11d6e6d731bcde0a2fe5871e92d00793b7e04a8c9d89a2567f6d6e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/snapshot-controller@sha256:09514418a0b22598706f3ec3bad29348ecf97163bbc023442be7757c9e76987b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/snapshot-controller@sha256:a12801e0586f52d0acb43ff107dd812f6ca5522df3c341eec2830a4cb39acaac
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/snapshot-controller@sha256:31fcae209a61a6912ad8dca5b44e8eeecb1bb257a3bb671e80b7781472dcc9ab
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/snapshot-controller@sha256:acbcce2d29708e566ba571987e32ae55b4868d7a83ff6b23656ff543dda7d03b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/snapshot-controller@sha256:04fc0043945d27b8da40446c58752026932d04d60bc170a5949ded861637967a