Sign inSign up
VersityGW

dhi.io/versitygw

Versity S3 Gateway 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.8-debian-dev, 1.8-debian13-dev, 1.8-dev, 1.8.0-debian-dev, 1.8.0-debian13-dev, 1.8.0-dev

Index digest:

sha256:ef06201f0c04c94e05267e84c19c3e224707a424755801840bdda14266a5da35

Manifest digest:

sha256:16dd7b22a6e624af8284cdf4d67a890ea3a8188cf8fc0deadf32a3199042e5aa

Size

47.01 MB

Last pushed

14 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/versitygw:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/versitygw:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/versitygw@sha256:5438c3ff458cde1a11d4709b2c99dfcf68dfbc18b7f0f9f538ecff0eedb603ff
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/versitygw@sha256:065fed14a074a89e6b2bf9f7812b2cba8db0385237af8bda680c91f79a63acc7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/versitygw@sha256:aec7eb75fde5976a131f4b321de5983a248ead6a68124fa11631709d63ccd759
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/versitygw@sha256:8becaebf1824ae8ecad054aff9265fa6a6c9b07eb88eb4b90578e3411d026911
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/versitygw@sha256:a6aefcbdc07f567aa98bb58f5748f78325c4bc04b8af35c9fa6cbc1e9bf64f12
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/versitygw@sha256:44f0564c7706bebe8ebf6b12fc21aa5d4dc911f7f71b4a21c06000f11a0f6173
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/versitygw@sha256:c930a78a8df3499ee43cd0ec69699e7532a97e8f3fda29a7899e0fe4e0b82970
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/versitygw@sha256:fa99300f9389c0374641a9d2fdd0d9eef0ba2e46f5a926c95a22869ed9964f9b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/versitygw@sha256:fe23346e97496e4646ea2b22cde18432f055a124ed3c72a313a2ffce4998c829
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/versitygw@sha256:a804bf2e8cbfa1299e551b22da0c1d10d4f351436ee29210b0da1f3127850943
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/versitygw@sha256:1628c0901ab20bc74d931677d7be4805d44b7316368904e96043bb6d758ded98
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/versitygw@sha256:fcf7e8f6c1dcf1a76ce526ffd478159f54aa66e30804ae65840b2d7000d61dbb
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/versitygw@sha256:4e1e3390de90de6937611d16bba8033c95c25afab643e9c94a7f852c33d5c0e9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/versitygw@sha256:6f6f2bd92aa3e93fc8f82ec860ab2d5616672906ae1d3f1a2476d2d6e8f51732
SPDX SBOMhttps://spdx.dev/Documentdhi.io/versitygw@sha256:4d775a3fcf6bef35b6ebf093417a95b709a5517f3e54b8a1b3038211fe4946f1