Sign inSign up
Valkey Bundle

dhi.io/valkey-bundle

Valkey Bundle 9.1.x (dev)

CIS
linux/amd64
debian 13
Tags:

9-debian-dev, 9-debian13-dev, 9-dev, 9.1-debian-dev, 9.1-debian13-dev, 9.1-dev, 9.1.2-debian-dev, 9.1.2-debian13-dev, 9.1.2-dev

Index digest:

sha256:ff87cceb387f77f7c629fcc22b37dbbe87ae9e64b173f32607584d7dde4506b8

Manifest digest:

sha256:6249e8359046fbb1db70fc11e211ee082b7c2bf0d51c731a1dac87e08e333755

Size

77.07 MB

Last pushed

7 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active until Oct 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/valkey-bundle:9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/valkey-bundle:9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/valkey-bundle@sha256:3e4d5f60ffd87ef2625b35d207aff22f2d5f569a0459473044a8ed4e7472e871
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/valkey-bundle@sha256:d705a739547aadb55fefefcaaa60723a6114dab1bef3852dc1df0a65f3609a91
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/valkey-bundle@sha256:ad2850e6abd019fb04bd718d88d198bcba7f992ff0d38b99a830e7171767bb2f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/valkey-bundle@sha256:15d1ae58dd5d282906544fec3c82ed3222ad31893523c51db04b8821db7f8e52
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/valkey-bundle@sha256:d0d50bb1714e27e30d601c6595aaf76a0743eb14bb40fde2aff929ed072be24c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/valkey-bundle@sha256:ad066b6e5b72ffb17fc50195352941499233186ef13d7efd85e5787afa9dd186
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/valkey-bundle@sha256:9b783ce7c2edcb3f2d99190f98fe10765e20ae8c1e8b67fad6bee27894497aee
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/valkey-bundle@sha256:3dbc6639d84787f6d88ab5005b7f7aceb32cd38ae134ae6191432aa07d8724c5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/valkey-bundle@sha256:d24b1d625a2a7f9587165d1320db16b751b61a196fcf79846e788bc708398d35
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/valkey-bundle@sha256:d25229528fc1fb17bb81c2de50d870a4eb99cefe09924c4bcf0c60b0232077d6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/valkey-bundle@sha256:dcefe3eea623303cd86b07e5cd7ef6953c7c8b8ccde2cfe105f99ed2ac376e5b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/valkey-bundle@sha256:d162f1d3a6307e96a563cf9752fbf578ad96f38126f2f7b1f42c0dafa8e31924
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/valkey-bundle@sha256:7fc1515bcee27ee9e5706ebe0ad9a92373f5444e1c06f43b3887de97d0bdbb48
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/valkey-bundle@sha256:31b71bf698b2bccd56b3513d8c4430586c968ee4e864f168ba7f42cb691e4b3d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/valkey-bundle@sha256:ca1efa4e231ae604e6411a08394147cb6978f4d8f6ec197a588244b236b92fc7