Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.28.x

CIS
linux/amd64
debian 13
Tags:

1.28, 1.28-debian, 1.28-debian13, 1.28.4, 1.28.4-cli-1.9.1, 1.28.4-cli-1.9.1-debian, 1.28.4-cli-1.9.1-debian13, 1.28.4-debian, 1.28.4-debian13

Index digest:

sha256:a94495ec58017e695d948224c0aecc391a2da1530a6bf69bab67bf142ac4d510

Manifest digest:

sha256:7dac458faaab58dd0eb281a9c191030583f4e95f8e2f5a53c79a2766da935627

Size

112.03 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.28

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.28 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:14dfe5100082c1cbf934e82b6d432fef17b431fbd546e527cf68a0709045174b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:a03996762c5fee3eca908bf0323b4d2d0661c2030a9a0401046462def9c341d1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:0237ed39a5ecec72906e11d8cdf06696ccebcb81bdae9b01dde7610b66704908
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:3fe696c12e42737cbe732c8ec091f99b5df983cc371c585e83cc5ed5a62844b2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:da1e8bd572280a6cd646c10194d2369af00f1d404cabfb729eedc9b4378475d3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:70086853c0d9efbcfecd463acd41d4918919c2dd38f6dfb9bcf8c5963b5d6c7d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:50acb93ec81f4f3bf49736701e3c7b43699668a50f28fc6682bb12aa0136c54e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:5480482eb4dc79d71978e173f486fbb7787c87468391ef4b20b8412b9a84d6a5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:817be8954832778a66202ccd467c18275fd8fe64a5612743def570cb568ac227
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:2907702ce61afe5648d1798d55cd8af3a98cbbf0e2c24ad6c838dc888cefffae
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:ee87c3dcbc09a6fc536108483cbe02382a73869abc30a7ca50cc62032499427c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:c9f6e5e685c5c21ab88e7c3b5f76574e2f5feb4bc395d01fe6740944014a6597
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:febdac527e78f1cc1246e3f86c03d006ec4cbb342b84a03e74c7d540beecd043
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:dae1ce17dfa6f7fc1833a06f89029b16153e6063b6e6018ed35c7432cc4897a6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:327ff93bdecd82c557c4037cc9b44bd1632c1ee495384208ca9808dafc947709