Rundeck

dhi.io/rundeck

Rundeck 6.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

6-alpine-dev, 6-alpine3.24-dev, 6.1-alpine-dev, 6.1-alpine3.24-dev, 6.1.0-alpine-dev, 6.1.0-alpine3.24-dev

Index digest:

sha256:ea1e9c7447243f40cba8d35124e18be99da5727da4bc1b44bc5ae774e6451929

Manifest digest:

sha256:c5e206e2c9d4acf74f95a7697e1ae64f730d08b9d50319dd857e1f0d3096f783

Size

283.64 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rundeck:6-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rundeck:6-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rundeck@sha256:a72e012bfe5ea00c6f5c7c9f7c405eeb24107e6c8ec4ac4fd8ce2e61b8b03480
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rundeck@sha256:99b3e835597cb0750d31941e68c13268d96d2a3d390a36f8f05e3a6b7d947ce2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rundeck@sha256:efb4f8da2386dc121c477ceced0199d8d9c54aa6b85dccb0513e179d1f8409ef
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rundeck@sha256:cd28ae70966c206d0001ac79db98069a1c25d11c6dbec28723939680e028777b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rundeck@sha256:ab0003f66e5d6e1afc156028c8955fc82bf46116f779984d126be14a9889b6ef
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rundeck@sha256:ef7b7e017571b30239d189d8cef7f2ede40e957d6e4e115c0e8a1149531542e1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rundeck@sha256:4a5ec3e2348d37f8be345649c3356e90d7a1f096ada0128f4e99159c3c98d13d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rundeck@sha256:89eb52b2d47fd2f6deac0566d900d9ab495571264a9c17c5e26314bd9515d836
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rundeck@sha256:4e8c6bfe02d98b350b4492da1fc55b7911fdbfce0d9bdf3870b9763b11f4ad77
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rundeck@sha256:b086ef38eef9b669674c435a2da26822cb5637f100fa21ee2597b7274db3c26c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rundeck@sha256:fe7449ff705d3599062d53baa365b7e9eb0e98aa69d6997d863c18ac28201d0f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rundeck@sha256:76e85bf95e44ee9a7651b2d19c724926a3b5462f3d47a65ceb5d19b169258656
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rundeck@sha256:260d17593e38e2c3c84b004ff8acd3ddf3e14b939f4e7814522c16c38d025f4b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rundeck@sha256:b3a30ce03abee5cad23772449aba6686c3f40c24af114df6ffdb56d4d279fd28
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rundeck@sha256:b2faca079595cbf2e9f6ee0309530a1bd23ff6b91a706a253e15242b536289c0