Sign inSign up
Deno

dhi.io/deno

Deno 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.9-debian-dev, 2.9-debian13-dev, 2.9-dev, 2.9.6-debian-dev, 2.9.6-debian13-dev, 2.9.6-dev

Index digest:

sha256:3f9e0439b70811528fc216a4bc7a9a9aea4418424125f1b4e9203108fca089b7

Manifest digest:

sha256:8afb0dafab179e5c01c7fa9159c6c0ec6d244b70f2e741ddf6e9b30c83c8d1ba

Size

145.41 MB

Last pushed

22 hours ago

Vulnerabilities

0
1
0
28
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/deno:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/deno:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/deno@sha256:e1b23644014655ba912b7f6e338b49e05d63f09e5968264cb0a3d4443498f85f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/deno@sha256:9847ef03a9d1b14ec5345d1ea85331e6233b2286c544df38dfb2f796cb4f32c8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/deno@sha256:1055c6fe0af1e5995caa4641241b32b2956a54bbfd8f7c830732a491f38ad436
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/deno@sha256:70cfb271761021196c923fca197346aa377c37032e334e8740383c8b2a74a6a5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/deno@sha256:871e7f7a573655cd09d0b44efe3c0f60e2142fbe3880552c00eda21bb52a24fe
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/deno@sha256:0ab529965602f56edfa2bd179d4a138e225cbdb8c14324b38eb1aa668f310fae
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/deno@sha256:a8609acca3bd2ffdb6d9664686c1e28e27ba102a1e7fae4ff670ee145582278c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/deno@sha256:8279adeef62a7d364080f4abc443c6acee677605e8eac4e235beaab62b6484e8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/deno@sha256:5294fa63e0844992792e4fb00da7ef2a3ad4a4a183ca7cc63de8178dbac4d477
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/deno@sha256:53556018a2d2ca4c9aa88ee6eb39e4acd9436817dcbf1e7936ee085be8d7c6d4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/deno@sha256:ca77d36fe5c278f4774e405e88d076e63dac7ecbe928b05be7a8db38ad4bcb26
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/deno@sha256:335baceb7547d09d9282c6f1176d7f272b0ec1e4cd83827c9f55f7aa97f14613
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/deno@sha256:f2ae931657e2ac9c5a76faffe19534b5b2cf47661e88848cea5ab6c39d9b6cfb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/deno@sha256:60494e658a0dfc2fd7e11540b95a4d17710620a0ab31dd8113b4140b488d7a6b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/deno@sha256:0774d7a90d3812d55b1791dbdd0a5abd47fa3575e6a1ea8f763b642f5599c7ac