Sign inSign up
Temporal Server

dhi.io/temporalio-server

Temporal Server 1.31.x

CIS
linux/amd64
debian 13
Tags:

1.31, 1.31-debian, 1.31-debian13, 1.31.3, 1.31.3-debian, 1.31.3-debian13

Index digest:

sha256:776163c7962265cef70605c8fee5d5eaf099504e957c6c3627190cb2c3c65e41

Manifest digest:

sha256:775b7b76e973e2009e7ffc36d00f457e71e958d5cd19dbab4f305b8aeed84a00

Size

45.72 MB

Last pushed

9 hours ago

Vulnerabilities

0
1
0
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/temporalio-server:1.31

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/temporalio-server:1.31 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/temporalio-server@sha256:a8f158cf7b61fd58abdad0f0e5b15decd343856908e0501db9b9490bc464e73b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/temporalio-server@sha256:303441ed50453fc6d8e41dd65bb76ba959b343d8f3fce7bb43547cc3b747ebcc
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/temporalio-server@sha256:259ba5a2b1314355d18c668d757726cd2a871bfc7070497111a1ee3c59b40d50
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/temporalio-server@sha256:cb73d80ca2623060425e5e431d1c021a3c5738bc10115244b90ebb34701489ff
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/temporalio-server@sha256:3397fe7f4fee52cd7418082de5c0e4f3449337bfb7e0b0011d70495f55a5b3c3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/temporalio-server@sha256:051a0570aebaf564a14b409732969186530f5d803ccc1a7191023987280d9378
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/temporalio-server@sha256:4d97f9b51a35403c2114af8b80249fb03ee04dc67d631b808e9ab30905f563d1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/temporalio-server@sha256:c6a1bedf6ab0ecf9351873f549c1f06b6e5c80c564173419b8602ba8ea6e38f0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/temporalio-server@sha256:d6fa49bb419ec1b01e136d0b3242d930482ee14e683177fd21ea998921b6d80b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/temporalio-server@sha256:e1a020cc781b570b5310d342ff91cd8586f80bfa068232fc574b00dcf1c3613e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/temporalio-server@sha256:941d670f0deb8778b3ad3266f89cb292783a98dd2325f237cfadbae45b97971d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/temporalio-server@sha256:e7ba0ef3907089cb1495ee3f41393472217899ca2478bbcc6127148c8978c46a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/temporalio-server@sha256:6e78ddf9c05fd1e4c1c22187ac2ddcace97c3979d03052998e7856e48b853f92
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/temporalio-server@sha256:acce8bd9f418ada3cf8c4d313513b6f29a00af49f19bf3bf3129f03bc9c3f9d6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/temporalio-server@sha256:fa76e10ff1957454067b9e0670a749e9b2f464ab1964d0ff3c6bf87a21401d60