Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.29.x

CIS
linux/amd64
debian 13
Tags:

1.29, 1.29-debian, 1.29-debian13, 1.29.7, 1.29.7-cli-1.9.1, 1.29.7-cli-1.9.1-debian, 1.29.7-cli-1.9.1-debian13, 1.29.7-debian, 1.29.7-debian13

Index digest:

sha256:d975f7af31c699bbe606d35e332e9e339399e18184525b2c2a7c3ef140273183

Manifest digest:

sha256:8eabb4fcbf346ed564d5b3a8df393b39a708e1f3e759baa6e400265e39676287

Size

112.57 MB

Last pushed

6 hours ago

Vulnerabilities

0
1
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.29

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.29 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:8a920edf1fe92d15435e411875316433b16cc52164bb05f5f59d93b1f4dc337b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:4529190869f1c5a33cc530988355a689cec5b8411ef451c02f697f8e341108d4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:9f127f4d7413ad60224123c2004222b0dbd2116c2aa37912d8cce742cd5cd3dd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:117b4f35d58cbedaababbc9dba0f9b8a712c9bc170bd3cc01db5be119c231e59
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:3b3071f2abe7689a31e4266d0f5702231c005391cbbdba3b04cd8675a52b5843
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:7874bc95d5bb987de9648b475b05aa561c7a48870b8db8ffc30c70c855d653ba
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:c45c2756798d110698285f9c95bac74b5ef4b82103ffa8e7d26880f410c7c3d3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:0a14b1d9510c20fd7b6405219934a877bff043c34be18f703bb49f22510021d9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:f2cbec6fa8a86b584730074dff65b074c9df116e6b4d348c369dc6c712ec44ae
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:2c9f89191a643503f441b0856c83db1a2972f0338f1df56cd9c1c1b06be25b11
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:ecf7e1130a3541178b77273e05e3a35b6bbb1092b3e672341829a826112575c2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:209dba6edba3d31e866ddab721d81fda694b973a6b44b9b55fe224a53652f819
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:d8dfd8484b0fe82ee2d93aec066d921f14587a26af941b2611fba104ff469e1e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:61bdae8916aa029067bf52001dfd02b6e4aaa56f4212e3f097cb356fb94e2c21
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:04cf2a39babbd1bd0f00815961369cf015a319ef8d5c882f98410d4642989765