Sign inSign up
Vector

dhi.io/vector

Vector 0.58.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.58-debian-dev, 0.58-debian13-dev, 0.58-dev, 0.58.0-debian-dev, 0.58.0-debian13-dev, 0.58.0-dev

Index digest:

sha256:8fd2f7d92616d205930378bb8d53920ec193df8ad19bf3a30ec1a1a491365eeb

Manifest digest:

sha256:3d0ea8ccf4ff45cced4c5514a480da4c9dca6b4eb1d3e02827ceba865a4845b0

Size

62.39 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vector:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vector:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vector@sha256:f0901c7bf84f58fecb051c438ab01eb02d816bf0e88dadbabaaae5d711f9def4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vector@sha256:bd3713121e9198b0af602d90bf5f832e34cd6570923731df592051c1ae9e9015
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vector@sha256:f00e60a0aa342744b7e346130ea18c2d43701c05ce789c6a6b57f4bf7fdf1e1e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vector@sha256:c623a4738373c4b8dcd9f90ead7ecd3c43bde1fef262aec4659a45744b1bd870
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vector@sha256:6f272593ae24cdab8e05d15bd1379eb630404074a1daeaab9866177ae66f5dfb
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vector@sha256:8498da6d22f197feb32e7ab515c08369f1b084443cc5f5da3b88f62f9912d531
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vector@sha256:7b52a0449860c07c9ddb4cbb29d5981d80917fabb74cf6892a339e43d59bb44d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vector@sha256:a0d064bd659c59c6656fc2f7a527530e5d5b79208966333c2130963734d2951f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vector@sha256:ed107f3c518b61378095fc3838b1aeb71285aec29ce9cfbc3d05e0eb5bf28fb0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vector@sha256:0a8b0b55feab25380452ce940e3d13f9f25431ff89bed9b80f5276e8df06c29e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vector@sha256:9f491f778fb723b3c1cba460c59361013fdc7bc303f2107c8609f63dd742a19a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vector@sha256:eae8226d625e27606cc003d55b6533d2289e2aea8eca11cc4e2b76ea32719e05
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vector@sha256:905965418808636dbe2969740735c19a2cf3deb5a0d54fef3e42aeec511cefb6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vector@sha256:58aee20cb86fafb32b636980c831c1ee56f26bc981101d0cbb885a6071248ae0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vector@sha256:dbdcd36275fa2bfd273a06da553c250b5ee32cf39f58fe0439feb02420b2395e