Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.31.x

CIS
linux/amd64
debian 13
Tags:

1.31, 1.31-debian, 1.31-debian13, 1.31.3, 1.31.3-debian, 1.31.3-debian13

Index digest:

sha256:3d6658dc04438c66b4ccdeaef020120ef85938a830d117431ca87cb6d646ecf3

Manifest digest:

sha256:04834a1f42d8bb64ddd338b69e8dfc19bf5a8ae225e527a74d2546c401b66691

Size

45.72 MB

Last pushed

10 hours ago

Vulnerabilities

0
3
0
10
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.31

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.31 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:438810f3bc8d60ae6ea22b3ed3ec3aeeb0ed9a3482d54efba0d0c52b9aa78ff4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:f329ac4c05855b6ec2bf5eb7713987a695a231457d64f9119ead5ebe05cea9d6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:db139be08ae69635c9f912b68c90936f144f6c93705260ce5a76b274ce1f9a9a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:e20a700229447bef3e851f93c16039d9930682cad8211ed3c284088abaa8a51e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:1582994411a7df83682f0beb4b0d516897c7079ef1be3e1787969e307139144e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:b0af6ea4f046c81cdf02b4aeb3be962543de380d9f66387d145010f4bcd37d1d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:0b93ec668e4e7fedce87ac2eb1c1f17c20d97d158f2f480297d2152d70fc009a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:fd8bbb4bee0df25793b26a5385d379196334abb8ea2e2f6283dc9baba43db838
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:205da167dff922e3af4c30bbf64c962add12d1b501b930b7d31b62821bb96676
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:4100b7dd6ce93d72cf2bb0d2afda251e71ec8ef9035a940da5bb90b8cc4d9212
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:80cbb9cd62a2c5f310688d5ab3b7b15e70472370921dd4e68cca5cad3ef8e899
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:a873d60733092ed433048d1c7b6621788d24e50e565e8b32079e07b42adabf27
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:6f709c7cc1d25984ca65fccb3d360be672a320b52ac3539cab4b5958c80ac4c4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:26b858a560fc8e123377819295a4de868730fcd2b5b8449119f17e8a1717922b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:728033e3665658f83b4c0c4ebf347ec054a8a37ff4bbe354eae56c25235a57c8