Sign inSign up
Argo CD Image Updater

dhi.io/argocd-image-updater

Argo CD Image Updater 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.3-debian-dev, 1.3-debian13-dev, 1.3-dev, 1.3.0-debian-dev, 1.3.0-debian13-dev, 1.3.0-dev

Index digest:

sha256:8ffd2f1105a8d41060c1d9cc2c185f7cc1b4377b388d0414fed85d4a9cd9e2ca

Manifest digest:

sha256:3dcaa901d807716e6019ff6a2128dffc251a4d80b4de8450f4e177d4815eb414

Size

131.33 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
0
11
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argocd-image-updater:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argocd-image-updater:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argocd-image-updater@sha256:3adeaba594265c4e621badfe506d240eec20bed557b49ee3b6e78ef9a5ee6fa9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argocd-image-updater@sha256:efe66ecd66d263fda331571a4907651331515fa64b8a9ac300ebfb81832434be
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argocd-image-updater@sha256:7a139eb96430e935b0435e2fd7ee33f37a3c609e142834541f836eb9a0c86d5f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argocd-image-updater@sha256:4a6489d799cbe8b11fbaaa75da97ea71e0b0367bf9b77098fc61dbf3fc61a4db
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argocd-image-updater@sha256:5a1338f278c4a2d07f5deeaeeea28cb07c21d29181ce357ca286b1ae2bb39720
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argocd-image-updater@sha256:1d0300c481694880c310cf691c120328ca2e166fede5b265872e4ad1f635dec8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argocd-image-updater@sha256:fd976b1ce92fbf888863f905e0d3be74d4dfd52482a6fc747464d23be64ee46f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argocd-image-updater@sha256:8c86cab1972e320e3d518086a2923572d5d5d0b38b1262f8d157f274983e3970
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argocd-image-updater@sha256:b00bdb0e385f250e084f13397bd8bbacd6c599722e12077e9f415151d5c0cbab
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argocd-image-updater@sha256:6969c9db997012f0fb31dc87822b627e5c16769223c7852791690b2fd06d83f5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argocd-image-updater@sha256:7583680524bf71da09ac1aa8a16542cb250abd734c2c15f725387365b4c63639
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argocd-image-updater@sha256:81037ac2b9f39d1c46d1675735ae39b2ed6e8b5ef85efec6ed7048aa3174dc4d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argocd-image-updater@sha256:30e5edb601589748e747aca48be3a40dd78d45942e8e5cc30ed0c02bb3967c5e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argocd-image-updater@sha256:e1be5c1ed09a0e52fbe95c4e4387e54d24f7c355f2f9bc4a7398ce2b2c403373
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argocd-image-updater@sha256:5b65ae4e59d254eaaaeeff3a75a175ad400e521bb8ce891602d081ae80ee5af0