dhi.io/velero-plugin-for-microsoft-azure
1-debian-dev, 1-debian13-dev, 1-dev, 1.14-debian-dev, 1.14-debian13-dev, 1.14-dev, 1.14.4-debian-dev, 1.14.4-debian13-dev, 1.14.4-dev
sha256:62fd5c5ec3df6fb6a4160954944cd24be237cbbc6023f4a52fafb211643a4f91
Manifest digest:sha256:9807d902e6fd1cf37a136e437d75375deb5241df4697d4b317500170dcdd9e42
Size
49.82 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/velero-plugin-for-microsoft-azure:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/velero-plugin-for-microsoft-azure:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/velero-plugin-for-microsoft-azure@sha256:0780e57e524589f33c4bbffd49ec82e27aa2473fe58db5e19097205b0dfa6b49 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:8093c898badd248fe346dc8b24d3018e9a41f86a9e48228ee1cfa986f8638d98 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:c942ca4d9a81356172f63df69ecedc5e1ced4020d407ac8534f3a804beafc4c3 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/velero-plugin-for-microsoft-azure@sha256:16df9da3e524c60518eb1c65a15e8f4cce21d6b7ef76bdb0a74b8d59c16049f7 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/velero-plugin-for-microsoft-azure@sha256:a6bb3f379503faefd0d1ee2bcb18576e2e73ed4f2098fbc9f6d51a73b9192593 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:f39a95bf67f72523f63d10ab2a5918e30f5f2b13439f0d453703b40a0e635570 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:45a3154a209250a3c88382a47d7981b66c428f83276524b200e64052ad812d3e |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:2a30b5fe825279b343ea5df603eed5285baad4a275941a6f346d451432de157f |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:83d2daa1e1c1f9cfad2507c51729402269066af9e636ac5da2170368cd8198f1 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:8e6690d145ef758b1a5a6e6f9c0470b1fd18ae8b69d595dce776409c1c208e03 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:a89739ac961eb83d777431ed0c75722678c4655f15326e8b480ddc1276ecaf50 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/velero-plugin-for-microsoft-azure@sha256:f93b594e6e36226dc6b8739060728de1c18a3cc810475d73d57a70178a3774ef |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:202ab4efc4c74a707b4b3c147ced0b49f7c75c651484aac970131490b12bb028 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/velero-plugin-for-microsoft-azure@sha256:f50628e0da34cb62b422eb0b77f3dc023ed5ce7b44b25d8d21cdbd1b65fd6587 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/velero-plugin-for-microsoft-azure@sha256:5172f16e94520da62cf6f377935b65499b379f2535bb680f3df7ae04f75d3700 |