Sign inSign up
wait-for-it

dhi.io/wait-for-it

wait-for-it (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.20200822-debian-dev, 0.20200822-debian13-dev, 0.20200822-dev

Index digest:

sha256:13ac32c0b1949711d9beb987e68605367c3b6c88c7cbf112c5f35c81b130d251

Manifest digest:

sha256:d5049a3adb7856ecfe3055933fb615f2cf49cb9e12667ffab17cb513be8df4e0

Size

23.78 MB

Last pushed

1 day ago

Vulnerabilities

0
1
0
7
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/wait-for-it:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/wait-for-it:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/wait-for-it@sha256:2d6efbafc854e83422587c3785aeab7ab23269c274431e33a8ad79bf1597e481
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/wait-for-it@sha256:dcc0b58d92ad64b3c94dbb8faa682eb07ce2c544d5341403b6b6c1ce1df351ed
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/wait-for-it@sha256:7300908dd9935fd5d0b3ed54fa8e4bc934836750e3436996bb2c5034953ec41c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/wait-for-it@sha256:8503a09bededdd2651b86092c7cfdf104cb5ab36d83ef4f3fa902b380d30e7dd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/wait-for-it@sha256:a481878f8ef610db734608d267aac011d5757156de37e6aaa57c9dee28d87b5d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/wait-for-it@sha256:e5ce9c693cc967455d4bc9223873ebbed51465b08aa80c4bab323bb7e0b865b6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/wait-for-it@sha256:538b990539338dec0be84a671266006a230f98e9daef9f7bca58b314c2ee65e3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/wait-for-it@sha256:a304b0552eca43683fefa6172f71a06f69ea583a6315f79a78b978632d489bb3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/wait-for-it@sha256:9784303eb65505a5d342fcf92933fea61f33f144eee7e5c71b9ce7a1345e0c84
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/wait-for-it@sha256:ffc7c2d470e20b4ebf429c8b6ed9797599273cd9e66fba9e0dc02e922945d0a6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/wait-for-it@sha256:f78c0acf08de3e884577b98f7a9aaa4da46237fcf0a4a9fea7f613cd47c3c168
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/wait-for-it@sha256:eda87e5ebebba7023d04c71db0e3bc408597de710a3c02aba382386e45ea6b09
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/wait-for-it@sha256:f7120b83a4c050dad1b37fddfce7e3b2b47395add948b0ea945af8facf4d4ad9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/wait-for-it@sha256:122bbd2f6264772286bb5346d60c1a75f785573b9e5aeb827a20721cba5e6717
SPDX SBOMhttps://spdx.dev/Documentdhi.io/wait-for-it@sha256:e5b58ba422714f5afbe59b898443084961b8edc7187c72aa366b75ac94968ba1