Sign inSign up
Hatchet Lite

dhi.io/hatchet-lite

Hatchet Lite 0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

0-debian-fips-dev, 0-debian13-fips-dev, 0-fips-dev, 0.108-debian-fips-dev, 0.108-debian13-fips-dev, 0.108-fips-dev, 0.108.0-debian-fips-dev, 0.108.0-debian13-fips-dev, 0.108.0-fips-dev

Index digest:

sha256:2fcdbcb9ea11e5c807b13cfe513ff6c1acb8f1f26a314284162e2b461e7a9d37

Manifest digest:

sha256:2f8e739acd18eba464aff970cc5fda62a1cbccc35c91df3b9dac4abeb51b3fb0

Size

68.37 MB

Last pushed

19 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/hatchet-lite:0-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/hatchet-lite:0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/hatchet-lite@sha256:70d86399cfbb2aad85c3fc2b4e4179c9e37913dddbfd9962696fa3aac487ebe7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/hatchet-lite@sha256:b15c6ca7ea2a5cb563ddc5fc1c2ddadb8a2967967f0d8d3cef1e0a21a0a2cfe7
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/hatchet-lite@sha256:9729890509d8e06fa79c64aa5a6bdf6896510a8af19920b08fa3e6f51eb93c91
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/hatchet-lite@sha256:3e33ad277027ecfd683a803a122b613c5ca45ce97d8ebb4bf0126f5a0acb60b6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/hatchet-lite@sha256:d064c78587c739cc66aedf052cf426567dcd9db0c9557eb2dc1c01bb0e2105b8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/hatchet-lite@sha256:a6e4015468ccdccc088f4833dc56ad08204c1440353315e8f03fb05bcbc33382
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/hatchet-lite@sha256:2f50b16b68b7657b8d10cf517d699dbad107f937366bc2b6b821837a5e6507af
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/hatchet-lite@sha256:a264537542934b989cc4ce3f9a153ccdfc4684361606ff6effa56611169c3fe3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/hatchet-lite@sha256:a2e1275a84ffcf69f758d7f9dbc9fc0457933e66f4d9ce6c21749e8a54727639
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/hatchet-lite@sha256:8cb59aebe72db3695742c7d922e0b843dcb7d5a6a9be0ac3e8b0bc838e12e2e7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/hatchet-lite@sha256:241a28f639165cd6d0a5cb4064ca344ac231c6f657c7690311c921bd33398064
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/hatchet-lite@sha256:e057b9dbbb264e85218e7a12706a29c82515fa419deb1d00696dfaf4235c3965
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/hatchet-lite@sha256:5eaafc0398b0e8608efb933541b6b3c4c6e05ae1ed632e5202590da5c0719fb6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/hatchet-lite@sha256:0011730fe644fbdee7338c9c9d7b944fcf93c1717a1423eff8d54c2c1778a1a7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/hatchet-lite@sha256:c01ec25a305bbbfe1d7e2e5e2615194f263ebb7bdc66e3b3518251d14210604d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/hatchet-lite@sha256:29269b7e16d4aed74fd5c16e11442b92af4a4e794e793adc4284ee65793ef7ee
SPDX SBOMhttps://spdx.dev/Documentdhi.io/hatchet-lite@sha256:a7c85c51538b7e2aea953cf963e307f7125f595c0c79310e36f0bf421faa6661