dhi.io/jruby
10-debian-dev, 10-debian13-dev, 10-dev, 10.1-debian-dev, 10.1-debian13-dev, 10.1-dev, 10.1.2-debian-dev, 10.1.2-debian13-dev, 10.1.2-dev
sha256:3717fb4c4eac7836d9c7234dd49983542e7c81691d3cf9e151466f665f1ddfaa
Manifest digest:sha256:85823ff886aecca273fad16eec5b1e6393da7b79e14750b883252872f2fedc64
Size
382.45 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/jruby:10-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/jruby:10-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/jruby@sha256:2d709de7514f39f70ca9e71221620e97ccbfce7e815b652c22b5caff3ab33ee4 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/jruby@sha256:bd77422c47923e5eb5f5c9d4262c514cc6298f30a1ae7f0a88f0b69d25068662 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/jruby@sha256:154156a22acb0fde0d2ecc619245deadff24691b889bcfab5aad95ad941eaea9 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/jruby@sha256:1ef2f7230d03b8c244b4d4a2512e6f66c8747a5b561e9721da2448dfd2de3059 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/jruby@sha256:86a4abbffbd9a3c9c1419d9a444c8345cf5636ceaaac8ae3d001331f90529263 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/jruby@sha256:b2ccd48c93927faa634a487e8b0d91b87d5a1b24c48fc7d7b725890184ee9f50 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/jruby@sha256:bfa96a17d6d8d50f9cc2f87f3a23b1ae9c1f0954f10571145cbfb691d1115065 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/jruby@sha256:7581d2a20563f3adbcb6f5aaf82b60a50303757a15ff8313bb1ab8cbf9d926ca |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/jruby@sha256:1b054c0f2fc110243cbb44823c7c10a162d5ed594d36c5c923be115cece085a4 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/jruby@sha256:7ffea8914f0d93e2e6c06d5ff8f5dd52bc56e2487cee55afb01f1f939dbbaf87 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/jruby@sha256:16cea4d59f0f6d638c4c735a031b799a856747933fdb323141c071f6f018cabf |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/jruby@sha256:ce8d918d4bbafabb1ebd20cdf0249b934044d80612860bc2c40f000bfddbd005 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/jruby@sha256:c216bffa824f7c40876979d8af5e1ee33548bf726b94c10264dcf19f500749f1 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/jruby@sha256:30e138bf0ff5e8c81253a568e511e00f904c6db9f2fcc1a033f62e40ebca03c5 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/jruby@sha256:a1ccd264109a2e3efe0d95af2b3d493b3467a99fb4f351bf8adcd4fc42ebe1ea |