Sign inSign up
Python

dhi.io/python

Python 3.14.x / Socket Firewall Enterprise (sfw-ent, dev)

CIS
linux/amd64
alpine 3.24
Tags:

3-alpine-sfw-ent-dev, 3-alpine3.24-sfw-ent-dev, 3.14-alpine-sfw-ent-dev, 3.14-alpine3.24-sfw-ent-dev, 3.14.7-alpine-sfw-ent-dev, 3.14.7-alpine3.24-sfw-ent-dev

Index digest:

sha256:6e93b7d672eb78aae165b600bcb9dba35e712ae19df73c93cd2888beee8d731a

Manifest digest:

sha256:21c4f4a11263ae2393031fd1fea760a4741402507fec0068331ba5450b0435c7

Size

119.76 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
1
0
0

Support

Active until Oct 2030

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/python:3-alpine-sfw-ent-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/python:3-alpine-sfw-ent-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/python@sha256:00ff190629d35f3d6837ac3619653f6bcebb624f4f140fde60c5de7c3fed3cbf
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/python@sha256:59b153f05611926ae92dfec10b685c36d538fa9982c11ba4e762f912649eed9c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/python@sha256:0e983607bfe1fabf8195ee09ff0bf3fa7409d0783be7774c9813aef890190a7b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/python@sha256:e76df9d0b3cde04ad2f1128aae61d5b943c47047e398c0428435c419b76929c4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/python@sha256:7a4e218c101d65d0ae4fdd13aa79ba31dc94c38e96f26548d61f9a2ca8a62dc5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/python@sha256:cfe4ccda1396a583147c0320f2b8307f82fe0758717da7fd3baf3b905a58a30a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/python@sha256:144fd64b38bf23d127ab1016988768eea0ac4db8732434631ec2ccaef78c787d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/python@sha256:bfe85460aa89c5fe6d5bcf44bf1c544eedd032a085b53400c6ebe4b9a8f4f9a2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/python@sha256:0d0cc93eded9f270aa584aebf8d9a162a23182e3b0075f74910dfdfc07d9c5c0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/python@sha256:a4fe85f213a481ec8d7581bcbfa83eefb603baa305908d8d00a0fe14d1cdb08f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/python@sha256:2e94dd57dee56ff5b709c6f40f25fe5551bcc8d395486115359dd22f5536f8c5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/python@sha256:bf337e9ad88e672a963be0652b81b78e267a5a0a7007608ba43e615d299e673e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/python@sha256:d7c5312276126686da5ed2e089f5ddc44621b6f43cdf018da3a6822b6e67074e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/python@sha256:11e0dfb82db919030c80ea9b884bab2f8bdb729ae362a3a19903e82b51b7c43c