Grype vulnerability scanner rebuilt on Red Hat Hardened Images (RHHI)
966
Grype is a vulnerability scanner for container images and filesystems from Anchore. This image is rebuilt from source on Red Hat Hardened Images, applying RHHI's hardened base to the upstream binary.
hi/go:latest-builder (build) → hi/core-runtime (runtime)build.yml-X main.version + -X main.gitDescription-trimpath, local toolchain onlyEvery image tag carries:
cosign verify-attestation --key <cosign.pub> --type cyclonedx <image>@<digest>
cosign verify-attestation --key <cosign.pub> --type slsaprovenance <image>@<digest>
Tags follow the pattern <upstream-version>-rhhi (e.g. v0.112.0-rhhi). Always pin by digest in production, not by tag.
Content type
Image
Digest
sha256:32792395e…
Size
42.5 MB
Last updated
4 months ago
docker pull timothyswan/grype:v0.112.0-rhhi