Sign inSign up
Vault CSI Provider

dhi.io/vault-csi-provider

vault-csi-provider 1.7.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.7-debian-dev, 1.7-debian13-dev, 1.7-dev, 1.7.4-debian-dev, 1.7.4-debian13-dev, 1.7.4-dev

Index digest:

sha256:8e46df27f714e1b6f5e79c5fe8cb23c72eca80882c656b64aa460c987d191b53

Manifest digest:

sha256:e8ae77a91de9c1f952f994dd97ac5d04563779bebead60c8555b5d81191f3edf

Size

47.07 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vault-csi-provider:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vault-csi-provider:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vault-csi-provider@sha256:69c50ad732531669851d1b1d0345cc9b44cfb1f7f793ad605448d48716a408d1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vault-csi-provider@sha256:d2270528e7b00c6eec89f398f609fddd2de7ee96b98a13cce31aaac9cf354281
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vault-csi-provider@sha256:c4a1ecfde5c6988bf792ee95d7e19c3b9d48357f883f1b35a9850bd373bc12c9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vault-csi-provider@sha256:dc630c7ef7d34d3f27880125309f6b8b44e1b440166108bcee74735a24d0b672
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vault-csi-provider@sha256:b710d252553c3a35d2c638e7579bef9e5efb72861dcb79eb3efb1cbdb82af97c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vault-csi-provider@sha256:96378b56d40450f42c748b3ad0b86af76d337d9352c25245025fafeeb14ca8f3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vault-csi-provider@sha256:050c70ecb3acac445d98d964de8c2f2fa93c2403fec5f94f1690a7adc99fde95
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vault-csi-provider@sha256:0e2e153358226ee90a805840aab6e60fca00dc490ab697a1d59fccbd63564878
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vault-csi-provider@sha256:f1f2a75e799cddbeaf9c8b66e878de1c053d6f71e53321b25b5be45477a448b7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vault-csi-provider@sha256:f638f07b4988522be9236f157d243d8145ae4bd62c3fc7cd11b509f2378246e6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vault-csi-provider@sha256:86db5f30221dc22e0c482cd028e917d76b4ac3706521cb1bdeb628d519064d0e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vault-csi-provider@sha256:e5a76536c58c0156f52125c8ea4efa77e862d1be3bec786bdf6473db3c54bbab
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vault-csi-provider@sha256:ab40ac96eb66697c95018d2c308415e63c8bc2ba9e0276e0a6bcc2f04f3f0553
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vault-csi-provider@sha256:54b698eead8949f7cad2677ad15115b5941725c51f179c350a7c1456cc236170
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vault-csi-provider@sha256:8c5f021eea088d746aa76451dbe90cc84a91e2fefd2bdcc1cfbd52aa7605a89c