Sign inSign up
Vector

dhi.io/vector

Vector 0.58.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.58-debian-dev, 0.58-debian13-dev, 0.58-dev, 0.58.0-debian-dev, 0.58.0-debian13-dev, 0.58.0-dev

Index digest:

sha256:01659497ece5d73b8c19661ec23e7bd25b309ee03401a1e04c26a417ea5d8d63

Manifest digest:

sha256:d25015756bf2a82f47fc193f131d0bd740a74c35f77ed97479e24314685562a5

Size

62.41 MB

Last pushed

19 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vector:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vector:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vector@sha256:adee26730d58bd3d35f9e4341649a925d860fe5bf37c9300a22ab893a3d2a808
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vector@sha256:9d7d18d9e9f4a67c973c652755359396edee6ae3ef578492b5d36f5e71ef3917
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vector@sha256:aa7712f88a00ce9f5dfc9bb8513a9a55dfb6483b5f2a956116255fcfc9c3b095
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vector@sha256:2393d4df8c140ad3383be45a1710f46ddccc3bb233eeeac6bd6b3d451a92257c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vector@sha256:d332910592cde85378eb61b9faa420576bcbfd9fa9ce486cf08aaf00a226e55b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vector@sha256:e1f0eead8b76ed7c44c847da56e338500d82ac82f7264af33219f965318e9719
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vector@sha256:ebedcb34ec591236cf12174ab4d001ab380c3c2144a2fde3dc7ee7f1c5c239ce
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vector@sha256:12b96bb80cb28614c0a114606394f7dcadc6205533a49bfd0827fac75edf6ba0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vector@sha256:dfe1fb0c28b2bd6b2bdf9cb11a685f3e4715fbac3a6288b2d503727e5d445b4c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vector@sha256:04e6b8393128b5d1220558082bb113440a34bdb471f9f569298c53cae248a70a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vector@sha256:2f50795ee4c9d191a521ce701bccc98d66001797bf816a931c869889c661a814
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vector@sha256:5adb4ce42def712eb922f8bfc63a4ec2ee22cdf580a986c59bf7f6fd88f5bb4f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vector@sha256:eef3f6bf08bca5efc62bad489f59e263c53256f80251968153ddea536a6f91e6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vector@sha256:402686f254e91fc7ccd059ee4379ab3d01c8b77b04072c7035d0db6664402b34
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vector@sha256:6a0fc0338b95be337fda97e8ba9e753dc109c20e7a5fa7d60275d0b28e5b0e20