Sign inSign up
Vector

dhi.io/vector

Vector 0.58.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.58-debian-dev, 0.58-debian13-dev, 0.58-dev, 0.58.0-debian-dev, 0.58.0-debian13-dev, 0.58.0-dev

Index digest:

sha256:fb9551db25c722bacaa1a2b8099b3280798f31c1d673579b3086a2507bda88bf

Manifest digest:

sha256:64cbef2a9542ba82d108532e163dd215fdb5a3dab4ddea0b7a489063785bc67a

Size

62.40 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vector:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vector:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vector@sha256:8841afc30d3c67f8ff11fcf35160ac15a84bc24655dd1e4879fb73129a3d1297
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vector@sha256:e3b6f9a9c82d8fedd152f77ccfd641a9d129b7839ddd9cf7896484a25c06cdf4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vector@sha256:570c06f547c70e415b274ecc82d300e9bbb21b349fc6b5e65d9d97baa3e9538b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vector@sha256:3d21c820ac3ce98b3c9c5b983aee73c7b1b58485ca80f4b25f77846338f95645
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vector@sha256:0a8f3f2fded9e1991128f3a7be7ea7de6fefa86f05304d854cbb5878e08393b6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vector@sha256:ade6bbc24ed33b4f7100c440d7b406c675a07c0931164630fe5f0310d43af609
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vector@sha256:adfbb662eba6fea5f882fbcc7b50959eaeade047eb27cc591683361f7d83311c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vector@sha256:e59cc85936dd6fd807b10804685d721e9d409c4ad550d7ecb1acf3478677cb7a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vector@sha256:dadeffe5a1cb93982fbd80050a1273e3f3f284c61b2ec1d1fee65a43f76a0abb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vector@sha256:38e179fe791419031541b88bb501e8e758c69e5bdac42d2d30e81f0c47cba8b8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vector@sha256:111304d0ef8167faa90cb59ebcfea6c409899dfc733e1bb76537de5652fb2d59
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vector@sha256:f6263ef9fd2e4c5decd4c643a8f9bfba1f01e2854381ba21e1f7b16bd61740b8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vector@sha256:68c8595cf08400ec215fb7b086cf05320acf416250e400db7dd46ab59df6b025
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vector@sha256:d3d9725f1e73786b8aa0af2003bac7498160cda039fe0475cbfd88ef50f78aa8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vector@sha256:37775d6ddcb4c594fbe76542be4f316a2d3bb368971d39d130379f287d4bc2d3