Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.28.x

CIS
linux/amd64
debian 13
Tags:

1.28, 1.28-debian, 1.28-debian13, 1.28.4, 1.28.4-cli-1.9.1, 1.28.4-cli-1.9.1-debian, 1.28.4-cli-1.9.1-debian13, 1.28.4-debian, 1.28.4-debian13

Index digest:

sha256:9036b7713e2a9f41ae71bdc7d721029d6fabc1ab6c0033f4b782a3a80cdb51c7

Manifest digest:

sha256:8220cf747250dbf7364049ceed6efab766b2103a4ee5c644030b80a7df126bdf

Size

111.98 MB

Last pushed

12 hours ago

Vulnerabilities

0
1
2
9
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.28

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.28 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:c4c1178619b07e5fd54d6bfed0688bf54e731d95b8874bab5bb3479b3bf1574d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:67582e1532aee4c709c824477e37a4f3dd397604bb2b8742abfdbda7520193d9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:d20880366a7fd38dc022964ffa92081f49cce42dce3032678393d5406d3368d7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:73e127ccb05057f6e5b257e7afa6be1b81b3a64d3f819bd4bff2006cc8b54400
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:f5bd11c39408e61e70a076e3e39ca4a25d61452d1afe5b3f65111e15d0ab241d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:f5957da69fcb80b95beafadd1d95f5f65034b168667c9865fdb65ea6eaf7e0c5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:2193c4b74098ec1d42ee028f2a6dbf66fcc57a99c740fb338115252daca26e7a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:9a9d1205f710f8ec7d9f6e59c11cf43c1ed0bf4617934b36f2e155618536804e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:dbfea91380c680ddfac13f672c99072e618a35e914d54e049647cf82529e3fda
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:c460f3c6b003826a5560fdaf1c010685445df42b84bdc91acbbfa431f889c579
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:7f30b55dae28e6d5bfb31ab3f9eaf3baf63a877807254639dd9a6e1acd3f1d30
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:d2ae632c8fc5663f49e63dcf129c866cb39467cdc9b1b1b1084ce9e644c4a737
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:ce7adc4994923c5c78e6d04c55d8bdff04f47c5a56c158dbc828ed122a717d28
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:b8f85b901c1b2ed14347f33da7926d89d83f3d420e9e1ab23d0af227b85e0825
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:0797a5541495da6a408c11a1cd2d53b5640dd5009d0c771d7e4907635c54fee3