Sign inSign up
StackHawk MCP Server

dhi.io/stackhawk-mcp

StackHawk MCP Server 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.2, 1.2-debian, 1.2-debian13, 1.2.4, 1.2.4-debian, 1.2.4-debian13

Index digest:

sha256:a6e4ad7d2c96cc6eb859e3ece4798187fe4271784f0a3d31fff213e7e551862a

Manifest digest:

sha256:07a9e61793c19eefbae0db2be8a0cc0b170d7bad3dea63c9db45457eacb83fd5

Size

27.08 MB

Last pushed

17 hours ago

Vulnerabilities

0
1
4
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/stackhawk-mcp:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/stackhawk-mcp:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/stackhawk-mcp@sha256:4d904f954070f1d1cf5064f577ea63953924cad837bf73101bede887a9638a7e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/stackhawk-mcp@sha256:b92679ff947eb69af7ce5996ea544473f6deb4fb7892bbb108e8fd1a6e2e24aa
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/stackhawk-mcp@sha256:760a07b110f5ad36a60649c9a9c19e1b286688050348cf7958bd7db620a356ec
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/stackhawk-mcp@sha256:4fac5912224688c8e2b7c3413cd44c310d958883fa2f300ceb492092b12b72fc
MCP server.json v1https://modelcontextprotocol.io/server.json/v1dhi.io/stackhawk-mcp@sha256:34581809127383d155f11ad5e5a6a0b68933feb8ede331372fdd3c27255c83d8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/stackhawk-mcp@sha256:f37b8852425a61ac1c9ba545f3bf75bbd45024ee2dc671a54b75f5654a526ef7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/stackhawk-mcp@sha256:2b250f25a6c9c6716cb84066d70e340cb31c98b114de02444f578b10b8119227
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/stackhawk-mcp@sha256:e25d7065cbe126f5103c76329889fa7ad3d493213d675d91e5b3e64ff6fd6d43
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/stackhawk-mcp@sha256:deb24b6fa6c4818d7b052a1b4c73e96262495fd3f81bdda824fddb80342ec50b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/stackhawk-mcp@sha256:0f1e12ccd5842c21a7bb253bcbb5df27a0035c3ba33434654605a673ee3d7f68
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/stackhawk-mcp@sha256:1e8f3d700e99931bf7d2611391cc267b11de7780f42cd9f54ea868078da0886c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/stackhawk-mcp@sha256:a939aabd23272611fa32b0df22079623ecf32c3ea0434c7cc91d3288f259f77b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/stackhawk-mcp@sha256:9e0e2c4b111ae758bdbc34dc46831dcf4b015231b73011d084f2fb2525719639
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/stackhawk-mcp@sha256:5f1a5dc2e3f1434ca4965a9c63462cc976f6f125dbfecb4a4c34abbdb4cb2384
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/stackhawk-mcp@sha256:d86683333af259e1e3894ef8559af793443817ea97e23f26cdc9d10bf764b808
SPDX SBOMhttps://spdx.dev/Documentdhi.io/stackhawk-mcp@sha256:fec3df6e2e05b03a0449a2fa8c2f0d18dbd623e3578d38d0d1022724e077931b