Sign inSign up
Python

dhi.io/python

Python 3.14.x / Socket Firewall Enterprise (sfw-ent, dev)

CIS
linux/amd64
alpine 3.24
Tags:

3-alpine-sfw-ent-dev, 3-alpine3.24-sfw-ent-dev, 3.14-alpine-sfw-ent-dev, 3.14-alpine3.24-sfw-ent-dev, 3.14.8-alpine-sfw-ent-dev, 3.14.8-alpine3.24-sfw-ent-dev

Index digest:

sha256:f9b9d550b24b0a016d7119cc0c5f4a953d44b8c5cc7b10907187675c5803851a

Manifest digest:

sha256:b1974bcad76841d42e86c679f44a0fad62a1b04d2036e086eee3ee4a6871ef90

Size

119.80 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2030

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/python:3-alpine-sfw-ent-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/python:3-alpine-sfw-ent-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/python@sha256:0957096a42c7b1f8fa23841553f677fb9d3a0420fd4d14d352ba6717e0b2a749
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/python@sha256:9d63f2fb725a700a44b8d3748339718a923cdbb0572e6a8ac5a8b1f9be2b1a99
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/python@sha256:4cfe1299985efc5ebff8d92944acd19606b094631e233bfdabd22d6177c4da34
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/python@sha256:3b63bf4aa2041694b9902988984cb858e0793b09888f8b3195b773fe23890582
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/python@sha256:28736e8ebd27e509a843fd948f5b54c3611eb2d52734c7aad466cfa3128f1a58
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/python@sha256:cdbc8cc8a3195a91a27009792c2f3d30d971fa6492be758dc7ac594cc06d3a78
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/python@sha256:bd6304468233218c07862dbc5bd820acbb05c1a69e66b54de712f91b8c861e42
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/python@sha256:4aca8c66fb08fa49b50973c7b21b7584c3441e298dc251a545a826b2bd179e2d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/python@sha256:92e6e0ea58448ac11ec0ce48fd98f604d629afd1cbbb9e2f41b37aa83e27fece
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/python@sha256:4997893934aa0cf4dc6e5dc96e76fbf08988125207e7af5fe90449b1bdb98031
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/python@sha256:66cc15d5ac21b385d2affe6bddd6033070b333981e5e800f8f93ec7245db9ace
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/python@sha256:0d14d88930afd5c1be2fdcf274aa304ac9c50b30f95c14ab0a0854cf8e79df45
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/python@sha256:8e1b33b15057677117908bc0fa52231ad55dee985f584db1fa27a93605da0e9d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/python@sha256:f3146e1a46b11d45a53a3ba0202f4762959794ca0ee39acb53df4f1e5030f0ae
SPDX SBOMhttps://spdx.dev/Documentdhi.io/python@sha256:979fac4dbf6d1582fb20b304248186c1ea09f40d4f07af513cd2a4218dcd5133