dhi.io/virt-handler
1.8-debian-dev, 1.8-debian13-dev, 1.8-dev, 1.8.4-debian-dev, 1.8.4-debian13-dev, 1.8.4-dev
sha256:56ec961fd8ab8a89975d7d632f1593e5510de90529aad29b1ed6fb689a461dfb
Manifest digest:sha256:8af558673a618ce4f03c27c588fb5d5c5940b247c11ff3138b5fa62956042efa
Size
71.78 MB
Last pushed
3 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/virt-handler:1.8-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/virt-handler:1.8-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/virt-handler@sha256:29b9f13c97f12d3a6416d55a1b0ca2086f407095c9d31600dbcb822f705c296d |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/virt-handler@sha256:7db365d300ffe0bc76d39f7cfa809566908cb43540b78400948249665a05ebac |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/virt-handler@sha256:ab4876bc197055f8adf1cb14e76d7a6e6f88f7b47e280f827c5449e69250fd3c |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/virt-handler@sha256:4ad11b7204205a6a767fcae0ba77a610cdb5cb97009ec5b03bf7e13924aff5b0 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/virt-handler@sha256:05d1babade0e5fb7b9e7ac75d820befe410cb1af04b2441108f181a0320aa4d2 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/virt-handler@sha256:7752b54b18558eb1862cd3d0561ce7f667388c265a37669d77436b4ee44bdf41 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/virt-handler@sha256:cdc275d4f75bb70ec6e845c15e554ac48c10e79e201695cc9ed478401be8823f |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/virt-handler@sha256:b579e1935c404aac57c45de2d93df5e116553cc0be6027faec2a3a78bef9df68 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/virt-handler@sha256:1258119f647f561c5c49c28c74739b65b856154e2cfd0f72736346f70a55e15f |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/virt-handler@sha256:e5c3e1cc31e8bd20c22e3f900d5891cf435cd08cfe80f12c9bbe0083fe2db1e3 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/virt-handler@sha256:7a1a8abfb1af15b708bb07703ecc02d8b2c81684d31c221389811a1f403ae29e |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/virt-handler@sha256:5c716a9a5b77aca67063b86f211ec42d3f4927c95d6a0701f3683502ca389188 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/virt-handler@sha256:d73ca148d445f6e9777a4a58a90839b9ff5d439079504358a8fb24777f1993fe |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/virt-handler@sha256:fcd1a10b94e2975fecb34501199654c810d5811e22787ac8034e44fba0e5e739 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/virt-handler@sha256:d571ae2f96f8f3a75d46a97941512a22c4adfb24e098c2b05c70da662299aa3c |