Sign inSign up
PostgreSQL

dhi.io/postgres

PostgreSQL 16.x (dev)

CIS
linux/amd64
debian 13
Tags:

16-debian-dev, 16-debian13-dev, 16-dev, 16.15-debian-dev, 16.15-debian13-dev, 16.15-dev

Index digest:

sha256:8ad1098a166f34c708eafc392e7a007fcc80e7ab14f857f4ab9eecff89df65b1

Manifest digest:

sha256:98691dbd042d085d0f81ea15fc748c63f50ae0c1bbdc557b7e0954a57b0da9dc

Size

130.52 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/postgres:16-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/postgres:16-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/postgres@sha256:3392eb4add30102a0e8dfd355fe948d261793876f1cfc7e9a04f71fbc3da1830
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/postgres@sha256:027d837b520192b0b906ebe303c4e888c0e613c928456065472220581db4cba3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/postgres@sha256:10d09511c951d83aca4530521ca317d47391f1de93be208c39919473bbb47392
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/postgres@sha256:6afd35c744911037f6c0c6d4e9335de317298bd874d8e7861e83191d9d6b4c0a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/postgres@sha256:27d3462cd7eb24da3fe0b4f6b897b10cc34762afb648a94522377f12ce3f29e1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/postgres@sha256:e8597ae1a07b1a571ccdf18baf51408c6aca4c3d9aa277ddf7f644d11d748d6c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/postgres@sha256:f137524dc64ba8b9353d0ef91bfd15d859322a498d2bd289ce60d6d425cfac22
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/postgres@sha256:1163db62d7fe7587dce766aa2ef267373028b8a8951c2c5b906285d21b241723
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/postgres@sha256:80e19aaefcf343870533308ecbd860e815bb4f0059de48db1a4682f678542406
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/postgres@sha256:5ac3c6abd167704ddd8bbffea877168bf682a45de1baade7bd5ccbec540c368e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/postgres@sha256:943bce5a6bf41f7d687f77e5daf183527a3500c12d4d586f227036be730fb5e2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/postgres@sha256:4787d0f084b4193b55e728101cbb39f47b64ac1dcc97f35c424b56aa75a0b0a2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/postgres@sha256:41552e1e29f04c3f0483225960484c593586e0c8129d836231c4f14d18cf1358
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/postgres@sha256:4f86c65c04a3745f51808893ccdb8b8babf2b037a501c24fceecf20ff2653414
SPDX SBOMhttps://spdx.dev/Documentdhi.io/postgres@sha256:153edfb9ff6c5e1f8f88d3311bcd4cb881b59279a1eae89a404c0d1722d723f2