Sign inSign up
wait-for-it

dhi.io/wait-for-it

wait-for-it

CIS
linux/amd64
debian 13
Tags:

0, 0-debian, 0-debian13, 0.20200822, 0.20200822-debian, 0.20200822-debian13

Index digest:

sha256:983d7ebd882be539e617e46ced4ed0c92e8d90082a49c3e8ea280185d7a3c09d

Manifest digest:

sha256:1e2a6113346436a33f1b3c6f1aa5720d22f25816b7db3a12e62cab8eb3cd810f

Size

13.39 MB

Last pushed

4 days ago

Vulnerabilities

0
3
0
10
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/wait-for-it:0

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/wait-for-it:0 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/wait-for-it@sha256:ace1f88a6945ffa1b8b2ec1105322cb1b11d9bdeb3a8a87e0212cee46713cb03
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/wait-for-it@sha256:99cd874bb5582f89c808c2ad51e1a2dc14384334d795639d6508c89eee16179e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/wait-for-it@sha256:5b76a156a2f7ad20338b535ecb07d0ebd83ebd3c95b4efe2efa967dc446ff128
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/wait-for-it@sha256:91ff52caf7cd1bc6732567324c91665942ef460080359fe4c775342a0f84be35
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/wait-for-it@sha256:0eede4b71fb65c83c8eb54d28429e00f82cb8facb83c18a1f8863ab8c74a4d32
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/wait-for-it@sha256:4829a3c9fab9e9041332f38e8150653ec9673b74a1c85bb74840b4061e627feb
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/wait-for-it@sha256:b284b9a875483d6a56af77118053ba9b29f8a7538015155ae86b950e0a737305
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/wait-for-it@sha256:445cface1504aba9dadeb76b3377b38e8e5c3c98c1a2b46a73485f2232e51e54
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/wait-for-it@sha256:6c63ba19b2737cf15d24bbbbd1f21bf9c47637c17f1b9556a22a2a591c256c11
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/wait-for-it@sha256:a1570763ba02a857c07d446999a3b71cf844beac0771ed4a556632d28b1596bb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/wait-for-it@sha256:a77002d91c4a5ccf8714d3f461bb36326ae68e4f4af50a40bb38d2fd9aacfa1c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/wait-for-it@sha256:ca7fedec3aaa6ba9056bb2ee1c6319c0474e6078e616d8e3b2ce51089a48f1e8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/wait-for-it@sha256:884e35196775d9313b92536aac9032bea259edd1a2f4234e0cda3e47b23ef7d0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/wait-for-it@sha256:45a04a8a9afcb555ccfe9eb201efe4a1527b1a888a29f25113f53e10eb769230
SPDX SBOMhttps://spdx.dev/Documentdhi.io/wait-for-it@sha256:1bcbdcb2454e392847009d64e18cde300002c2de92186a0f3648623215a2e463