Sign inSign up
Neo4j

dhi.io/neo4j

Neo4j 2026.x

CIS
linux/amd64
debian 13
Tags:

2026, 2026-debian, 2026-debian13, 2026.08, 2026.08-debian, 2026.08-debian13, 2026.08.1, 2026.08.1-debian, 2026.08.1-debian13

Index digest:

sha256:5321bc4f8f8287bce1fcc161f3f3c9465ff9e314a4dc9e628e87b1a903ecb937

Manifest digest:

sha256:239f16c9671e54659e14dca0b3a2430fdefd9dc3579747a7fbaa9a08247d39cc

Size

195.68 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/neo4j:2026

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/neo4j:2026 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/neo4j@sha256:b23a7db1d9836d4dfe79591299c157e0348c03f4b437ae17ab06ffd9a6d325ca
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/neo4j@sha256:8271502de8b0c84c8a70c6b61591480e8eb2acf329fae1d624926b0d25e092dc
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/neo4j@sha256:cbf30d8d895fde6a5e3ce16661d3ee376e01bc95a0ed4aa766abb3256c8238cc
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/neo4j@sha256:9ee85f1926487e4fe989ba36db01b3de3a1b2cd9365e636d2bdbd93cb63f5870
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/neo4j@sha256:523f8e96bf7a0813356378034563fd1ecc01fee0dba0002e4081b540108c1cf0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/neo4j@sha256:60803dd3b40e65c78c8d7db585407523472809860c7eaf9d9e06128ae887e8ef
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/neo4j@sha256:ad2536f08d1dce0c5c94d6d1179089da605ac1f7ca5ac207b3f405b386129a3f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/neo4j@sha256:2e1486a51b282adda87bfe54c319fd6ede09ee04f733011de01a2f41b809ac88
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/neo4j@sha256:c98e4ff5d0893c6d0cb3861ccbcb88aea8ccb7eed8b10c4bb9fdf1e9843a2506
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/neo4j@sha256:34bc457d8be34f08d87ec484c41cafe4577f42c4a78a601ea346efa6472fab55
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/neo4j@sha256:13813981b07cec118a2321020f7820e2111fc348366cdde80da469fe221415ba
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/neo4j@sha256:a594b54a7008c816c7c35a8d6c1b2de56fc408cfbdaf145ed90e685c5aa4dea2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/neo4j@sha256:35466c21ab1b6d44a5350873220c3a50a8d33ebe67a77d61bfcee917cc79ea44
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/neo4j@sha256:9faf20aa840cc5588ae1b966ab135ff5a9d4d21dc341f2d3dd766b61220e0cb7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/neo4j@sha256:d0974ff549ae74f336a2dbbe2fe5fe2d3e7c905a33749d0167d557b79ef4fc65