Sign inSign up
Snapshot Controller

dhi.io/snapshot-controller

Snapshot Controller 8.x (dev)

CIS
linux/amd64
debian 13
Tags:

8-debian-dev, 8-debian13-dev, 8-dev, 8.6-debian-dev, 8.6-debian13-dev, 8.6-dev, 8.6.0-debian-dev, 8.6.0-debian13-dev, 8.6.0-dev

Index digest:

sha256:e4fea487fa0210cb7540641d5ec3a977bafbfec769ca9e17cd93cb900b759c6b

Manifest digest:

sha256:cdb6997f8c4d84b46df6592529a533d8db3eee58fa520534d6bb12d88890f3e2

Size

56.08 MB

Last pushed

10 hours ago

Vulnerabilities

0
4
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/snapshot-controller:8-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/snapshot-controller:8-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/snapshot-controller@sha256:fae2ee857a18288b33dd42edd8d2852e345bc2dd3cc5e9f378cf1134dbfd82c4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/snapshot-controller@sha256:d4318a856fff01d044f2c8513e5f73fe912ca02cd545df546a8a2733658d2c47
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/snapshot-controller@sha256:5ec471dca70d532672102e9cb297728031f7f90f737012ab8c74f5ee917e3998
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/snapshot-controller@sha256:612d5d41d2d453145a38a4364536046508eb1a522d409e6af3070be2724d9b59
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/snapshot-controller@sha256:7a19f28f14e3e15bbd6365a32f7eba61e51903beb14c36aff3e3f68589251cc0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/snapshot-controller@sha256:6cc0671aa8547fc2ffa67932db4ca8be9a0c301b874a9581e4ede3d1344b51dc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/snapshot-controller@sha256:b349882d367f5b8c5a2eabbbfaf1d282179069f7a45793b3e33233170bec1f34
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/snapshot-controller@sha256:d5cf07862bb09d5ecd14dcf22ca084f0dadafa6416dd89a6bbc8566dcc762981
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/snapshot-controller@sha256:a4c2e6ade2746c302c0edafd46890a66fc2ef49d6b8f441930e2c72e9ba525ef
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/snapshot-controller@sha256:1ebe24b9c62f50bed9de634a8d5f1a972cc3be9ec6b89b9c06b2b88eaa211d05
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/snapshot-controller@sha256:3ee4f31974bdc9e85db3319f809742c437d1e6e379d69c74773007e41b25c2a5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/snapshot-controller@sha256:cb387e4b42a56e36fd2af4bc84dc347a0c40cd71f68b4d532792797e6be46e47
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/snapshot-controller@sha256:a3f30a09aca14171a0aea3ce0d19dde547c3c9170cf41299ad7e8bca12613c7a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/snapshot-controller@sha256:b56c43715f4ed0e6e8dc6533e85946276374d74d95005edf5a4e13cd0fa310e9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/snapshot-controller@sha256:24f65441814e547c24be9c1ae50d369bfb9c13c751b23c730e9f426f5d08af0f