Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.31.x

CIS
linux/arm64
debian 13
Tags:

1.31, 1.31-debian, 1.31-debian13, 1.31.3, 1.31.3-debian, 1.31.3-debian13

Index digest:

sha256:41dce90735e6d107ce0b00c2f8de3b40c35572a5763ad0bc952e10fbda23d0db

Manifest digest:

sha256:4cdaff066aa247b8ebd7ccd56500b8d60a4ebe01e8e4ca593e8683d8be54eec8

Size

42.35 MB

Last pushed

2 days ago

Vulnerabilities

0
3
0
10
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.31

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.31 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:dc925e99b49b8fc56c5d958cc18e694e6ea8903ea14736668f2a9a7a26de6eac
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:3c97a3a51d66a9b88032660cb6ff5c69dbfb22b154fe3ee04dc68ef9eb3a5a48
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:59642a9177a86d4cf8540d3a80e0f4a8bd8a24f7c7650833618b2f14b8d004c5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:56ca746a04b841877c4ec0c4239b597971b6fdc7d997c69218b01d5501eefe7c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:ec861f9921ad42b8a37196b6eac1056d427a3a198346beba487892367e8b6478
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:a2ce1a8ab06fd93bdd6ace330114e8f41adc220ac95d6a6f6a4b5e23343cce9d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:721f59f329135b33c1d7f64e4effe064021f1b869e6e9653632f6aa4c9ac329b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:15e22995e129846628b909b5fb8c82a57c8dbe27cd8156620676a18e0c525fd8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:116ab4fef4b5ced0e5fd7e27b73873489ecdb7788ecaba7f8f6295606046d8b4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:756c2837c3707a03cf6fad296ec96584e47df035ec28fd8b6b4af93f44e022c6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:c32581198e0033ade0db7e53d5f00d68931b427d816229002842e135842c4c6e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:54f68d29b5e3af1de505e90e4a1813cc459f619e79c82c4c34fc7e0140623c78
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:10d0f23a81c622521e9161d6dc27d99402d54593d8562b43b17ea591a5eb28cc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:51d05ec4d730b06b4b01de993d0791548654cc0763f69f08a972e19e56b76d8a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:b712988cbf4ef49585ba01a667fba6686417f12a0c445734f16028c42632d341