Sign inSign up
Postgres Operator

dhi.io/postgres-operator

postgres-operator 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.0-debian-dev, 2.0-debian13-dev, 2.0-dev, 2.0.2-debian-dev, 2.0.2-debian13-dev, 2.0.2-dev

Index digest:

sha256:a03d6733d1fa99ae772157dc2e387a4256741bf0848e42484eacfaa00bd6b121

Manifest digest:

sha256:92fb212dc3a05c1c56e7fd66ec19012c019e06c62ad660db3982206c4f660fb2

Size

58.44 MB

Last pushed

9 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/postgres-operator:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/postgres-operator:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/postgres-operator@sha256:2b0ad41c824f783f2789d9a092f69485a602bbaa5e1aafed0070b43bb843779d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/postgres-operator@sha256:1a80d80dfe8c16bc3376454c6ff02b8138b193b11dc99784a12aefb89a8b8a1a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/postgres-operator@sha256:f7b24425980597c7743196dd50575c7c16cc424eca04c4c5320d577927a269ba
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/postgres-operator@sha256:05704db8128c7baadb24f16c84bd699450a1044f247bee6d20e7c38bc77496fc
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/postgres-operator@sha256:e68de2aac04659eb4dd33efbac9fc3e1133a5758c1e012c8a03879ad4a5d2211
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/postgres-operator@sha256:fc5d6b3845b02f6a406a5bd3bd04757d879ee26e9b44df066e11030bfd440125
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/postgres-operator@sha256:e18f2c21357875d98823497022097be82b0fd9480d632f64253114891416f539
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/postgres-operator@sha256:5b51e6d65a5cfe7d2ff0108e2584127f59060766f2b1f2ec35bab6194be2c21c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/postgres-operator@sha256:636cb3a8cb1459eafdd595a53e9f1b9e642255710535d9cdc17d7b37bf0e7f63
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/postgres-operator@sha256:24753e00769b0d837af5f35b9e3e8b87355c1b86017a3fa2d7e61edbcb5e408e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/postgres-operator@sha256:3c7f097c62133693d471e77c7de98d50544c6fb9bfe0480c26915cbe17a2e78f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/postgres-operator@sha256:51e2ef9a42c3bfc19b916283b652a208b31599731aca4dbca6bcb3637b089316
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/postgres-operator@sha256:4bf7f41ee4a1243d9c5419feaa0af1eea12d713e3dcb83b4ee38955f793144fc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/postgres-operator@sha256:c80463f46368aec50db97fa59f02e9e4239b349b52aacb644884aae78925d6db
SPDX SBOMhttps://spdx.dev/Documentdhi.io/postgres-operator@sha256:a86160ae1e220e8ebeb313ef710d8e6b6df5d2b0c0544dd89021658cfdb25705