Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.28.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.28-debian-dev, 1.28-debian13-dev, 1.28-dev, 1.28.4-cli-1.9.1-debian-dev, 1.28.4-cli-1.9.1-debian13-dev, 1.28.4-cli-1.9.1-dev, 1.28.4-debian-dev, 1.28.4-debian13-dev, 1.28.4-dev

Index digest:

sha256:10b4308c8f6961f6cc3bd38a243a220b35f9382b0a174122ede586074604c164

Manifest digest:

sha256:8ce295a255935ed283dcdcb11b166d8625e654dac4b5d9aa25c125c7b52ad094

Size

214.27 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.28-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.28-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:a004d237ea8de631019405c3952c8eec4baed664aabfc22b76f74a852758ce98
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:e583ad2f5675c40bd5eb7820266fbaacfb3a0262bfafa27cc2e973f2dd25eb9f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:d1232fea5634e57f23d5f593242e3737493af0f9db28d5ea8db82705c29c656b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:a221154e5e940fbe545b4d444ce206c1b6dfd409053c985192ad6832e497113e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:6b5fc784a52d76f82c355447130114e4013c6f19e29ad5cfcf5bf48beff8185d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:a9d976dc77d4a733af2cfa02288386348e46441794168fdb5aa606999e6e11be
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:17ce32dc6b69473fe1215393abdb1c245046fe5c16bd1f2d84949930476f0294
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:658baa533bf3b5a079790c22f963cc0871bca89c6decef2b9dacd14bf9611da0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:dead975c77e81a7d18a71b1794613b632b9919eaf3a23934f8cb48987e468b6e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:c58e596252e5dac2ca7e2688bfeea73d0866b7a4382fad20f45378c31543e4e1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:9d28847a14b6e5a7a26c2522238862bc3bde94a3406943bc94e5c0830da49caa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:5218fd3d4194a73055b395af4bbc7f2ec8adf697a144d1940485c4628e4fc261
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:fc46134a79cbbea3a49e899728196f5e6e26e107ed19ab88c50b6f12a4132355
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:88218e482c4a380ce6b68a61558bfa52a826a854221191ca5819dabbea24c736
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:6b4ee863c18094a618f9211b259562363a7b2d01c51bfeb79e6d95c153a6b338