Sign inSign up
Notification Controller

dhi.io/fluxcd-notification-controller

fluxcd notification controller 1.9.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.9-debian-dev, 1.9-debian13-dev, 1.9-dev, 1.9.4-debian-dev, 1.9.4-debian13-dev, 1.9.4-dev

Index digest:

sha256:96d2f2995136c5063b3bcd6452941d9048710a470c45d2ee2b2dff21dbc3b7b1

Manifest digest:

sha256:a38f2c483332d71f44f6a1e426d647b89db723c5f5ae8d916b80558e19efffe9

Size

65.15 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/fluxcd-notification-controller:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/fluxcd-notification-controller:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/fluxcd-notification-controller@sha256:2ea2009aa3587e9061c0788e85d419e1b116f945048c4abd3008db5d19005c74
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/fluxcd-notification-controller@sha256:cea37310ab6591d20ced399bc81d13192649e1357b34d3f9a0feadc1218a483c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/fluxcd-notification-controller@sha256:6fe4a6a6b257884005f6246cffb467abf5c0b00a0a28deb4a29127b8bc0e664b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/fluxcd-notification-controller@sha256:a6694af40227cbb9543fef7a3a75386496a734eb7d136de74c74dda80a6903be
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/fluxcd-notification-controller@sha256:c65ea77c92657fa13cceef5ad987e016cf7a6c796c998c1219982606c7aabea8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/fluxcd-notification-controller@sha256:f0e96fee86cda7aaca3d82cb708b1289049a27a0f4ee9f3f4ebdc783ca69dcca
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/fluxcd-notification-controller@sha256:893bad3d292a76cb590a13fdd71a7a9d494fca817bee824a6245ce9ddf30972f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/fluxcd-notification-controller@sha256:fb23b5c503e0c55a9a94699565befde3553504a12616034c86a4b9bb4a2d2fe4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/fluxcd-notification-controller@sha256:6ca61563b4e0723461a8a07bc5b4fd0eb749a8a81cc838813ab06931d0d072fc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/fluxcd-notification-controller@sha256:87f40c5ccc7e64002536e599f0bb180379022f3c68625ae1dabe7f11876b6ad6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/fluxcd-notification-controller@sha256:2f1a69f4e676a2fab4849cd1d98382337731f6bb37fd7e6fc89cf5a8f18ab22f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/fluxcd-notification-controller@sha256:7b543932a83197cf871ea3a284daf04e7044d2ac222b4f0a6c6db274184e198a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/fluxcd-notification-controller@sha256:6666b525f1bccd06970cf3c326b6138fa21eed307c0172dd4d9d1114f030ec5c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/fluxcd-notification-controller@sha256:d36c891bbb33ad72e1661cde08de0492ec4a9a72654e4c3c3a5810986aa478c9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/fluxcd-notification-controller@sha256:17393c5af6f563222048f72da4ae7417d7834dba65ed08d75941444057b10916