Sign inSign up
Vector

dhi.io/vector

Vector 0.58.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.58-debian-dev, 0.58-debian13-dev, 0.58-dev, 0.58.0-debian-dev, 0.58.0-debian13-dev, 0.58.0-dev

Index digest:

sha256:fb9551db25c722bacaa1a2b8099b3280798f31c1d673579b3086a2507bda88bf

Manifest digest:

sha256:64cbef2a9542ba82d108532e163dd215fdb5a3dab4ddea0b7a489063785bc67a

Size

62.40 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vector:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vector:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vector@sha256:8841afc30d3c67f8ff11fcf35160ac15a84bc24655dd1e4879fb73129a3d1297
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vector@sha256:58f959fab4c40053079126de8dc5e4981e57f44334aaf5b4c3f6017f6caf3a6f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vector@sha256:c8fa9efa85759c5f19615d0f10a9126bda17ea7eee321c88bf11d70aa0b2a6a1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vector@sha256:acc784f8dd58fed4d13e5ba62a6256ba85de9292237845ce808b960c3e7a1e5c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vector@sha256:8c3ce5ddef2156b47c8548e76400fdc604c3988b8f822f27e2dcf7037214d028
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vector@sha256:ade6bbc24ed33b4f7100c440d7b406c675a07c0931164630fe5f0310d43af609
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vector@sha256:adfbb662eba6fea5f882fbcc7b50959eaeade047eb27cc591683361f7d83311c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vector@sha256:e59cc85936dd6fd807b10804685d721e9d409c4ad550d7ecb1acf3478677cb7a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vector@sha256:f1034e22ed90ab951e7b5d81f8b4ee72d663dd6c651f1a16fce2e5ce38c21935
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vector@sha256:824433956fc48f4decb82add9b7dadd1f01b42b74e79927267b1a8b412f33502
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vector@sha256:81a82e1e63b44b09ea1b2d5c38b8fe45dc352d42cc25ad925271f48e388a24e9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vector@sha256:f6263ef9fd2e4c5decd4c643a8f9bfba1f01e2854381ba21e1f7b16bd61740b8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vector@sha256:68c8595cf08400ec215fb7b086cf05320acf416250e400db7dd46ab59df6b025
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vector@sha256:d3d9725f1e73786b8aa0af2003bac7498160cda039fe0475cbfd88ef50f78aa8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vector@sha256:37775d6ddcb4c594fbe76542be4f316a2d3bb368971d39d130379f287d4bc2d3