Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.30.x

CIS
linux/amd64
debian 13
Tags:

1.30, 1.30-debian, 1.30-debian13, 1.30.7, 1.30.7-debian, 1.30.7-debian13

Index digest:

sha256:04f3d18e41dd3ed71bc396e3f09d78e2878d13e2fb5aff27f5c6fe48144b1596

Manifest digest:

sha256:28dada76d5e24763e27505f7aa225263e8d1cbf92cccc3a9c725cd17389a2062

Size

37.87 MB

Last pushed

1 hour ago

Vulnerabilities

0
1
0
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.30

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.30 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:8b90f275d0034691ace3aab13af1b6ec7119260c91eb1c1eeccf3ccab71e61d1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:74c03b21b2342c3f6d189b59de88e866f13c31c7a39f4d21a80e8cbec75caddc
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:a3ba0d8b85267c9594c647161191214e0762acf96d93c1f7ed930f73a0bb423d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:4f0a7edac7f1f081b85e34fe0badd932d35ee9ff22e349eceb1d07d95c9d81f3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:b8c5724ecd85338f81df153c4b94fdc5a5cbe47ba15ddd10ecc0045d1340310b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:494279d34924477fe9c136c252ebeb18f64a63ae1033c95259dcf165e68d8249
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:cf35d1b12c3cca0d2991815be66d5900ebff96a6d4160c3e89b184ec2492876a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:b983d341da18117276b923b9c1cde8311a4556d4e4e73ef5ed5fda42c42a31ec
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:41333dbe1c61201cccce784f28c473757d883a1b973bf43415057a2cf8057b93
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:c737d1f0e467b2bc8dbc34376f672ce188ce1f494152738c0b9c23b7d03a01a2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:0433f4dd695d4bf1942067a1c4eb0c98a8780bfb274299108e58c6ac8cf8ab9c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:54a5fd0180a65157b6a4c46cd9320ed40d95a0efeace53fd37b9120357d602d5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:99aa5426b6cbafcda7ea46068a1f158ade0ee85c8ac844bbb5d50f348936047a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:7e11ae3a6d73506dafc981fee7685328b4f3614425f9e22c974631507292bef5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:0e0fccc185a0b8fc5f1b52d084522605a6e75185444f9011f2711eb957f46076