Sign inSign up
Deno

dhi.io/deno

Deno 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.9-debian-dev, 2.9-debian13-dev, 2.9-dev, 2.9.6-debian-dev, 2.9.6-debian13-dev, 2.9.6-dev

Index digest:

sha256:1ce9299a7f772e5e7fc0eacce706398d56e57ce04d8d577bbe21d08e13d39159

Manifest digest:

sha256:bc112c7530d28f7b86b199c1b298ff3754f631a6e97e71811eba60278a0d86e6

Size

145.41 MB

Last pushed

6 hours ago

Vulnerabilities

0
1
0
28
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/deno:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/deno:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/deno@sha256:25d2bbfc2a23bbe8125afc53f1e75815464657ed467f3176981615ea44b4ad44
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/deno@sha256:fd5d54f4c719c1d5ecae4089d0f819e735b3ff636e669d082ec2f7a9a6889921
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/deno@sha256:8e756be23516ae8368cbbc1f17036adad4f5e70bf67e8a2bb54ee1e57e97c1d8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/deno@sha256:8bdd00ab28ce776bffe89fb15b9832b0fd0c7e69f6399cb5f8fb49a80415e599
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/deno@sha256:2c88141cfb2c8d3cc6b1c8b5b716a33eddbaffd63d08d1344b71c41fbd358bff
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/deno@sha256:1d1dbc0cc8ee6cfa32c3d6b64586954cd270142b36b99ef451a6342a7072e349
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/deno@sha256:becb4965186b63d14bd95ddae0e4036663b4fe74e16842b684c9ee0b611c2667
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/deno@sha256:aec353af14f5dd939a98b4e15e91af9d0550cad88661ad59f3a2321a59436006
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/deno@sha256:f9b3e4fc2007a2c28463a109dd628583053d98dc128ac5c8180e1d77a548d900
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/deno@sha256:c4a8cb5f3b199038e644d2bbceb40303c347cfd74dd2fcf89d91d4b841c36a9f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/deno@sha256:8096ef3c5da6ecac9d51c30b78177918e252dd858fdd2b7f8b004cd61a7d03d7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/deno@sha256:1271696e5b95050910558746fb190cacd783d61b0fbd169ba2a40355901b0a4c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/deno@sha256:1db9525ac8794d62799348eebac708007e0eda07a93a23b699e20688c9fa97c0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/deno@sha256:53b52a518119796e30aebc3ec2f21808007e3fffa80c4be4df4519974004a296
SPDX SBOMhttps://spdx.dev/Documentdhi.io/deno@sha256:a7b84453304e4661e782ea64a04c03f92b25cefcdeee1445dcb600e053cea3ad