Gitleaks secret scanner rebuilt on Red Hat Hardened Images (RHHI)
455
Gitleaks detects hardcoded secrets (passwords, API keys, tokens) in git repositories and filesystems. This image is rebuilt from source on Red Hat Hardened Images.
hi/go:latest-builder (build) → hi/core-runtime (runtime)build.yml-X github.com/zricethezav/gitleaks/v8/version.Version-trimpath, local toolchain onlyEvery image tag carries:
cosign verify-attestation --key <cosign.pub> --type cyclonedx <image>@<digest>
cosign verify-attestation --key <cosign.pub> --type slsaprovenance <image>@<digest>
Tags follow the pattern <upstream-version>-rhhi (e.g. v8.30.1-rhhi). Always pin by digest in production, not by tag.
Content type
Image
Digest
sha256:8999e0a7d…
Size
20.5 MB
Last updated
4 months ago
docker pull timothyswan/gitleaks:v8.30.1-rhhi