Sign inSign up
Argo executor

dhi.io/argoexec

Argo executor 3.7.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.7-debian-fips-dev, 3.7-debian13-fips-dev, 3.7-fips-dev, 3.7.18-debian-fips-dev, 3.7.18-debian13-fips-dev, 3.7.18-fips-dev

Index digest:

sha256:ae06fda7f69f57938a2d8d81c9a12b9f0289106abc606ba6c3bd9c8dce1a0338

Manifest digest:

sha256:1767894f127464a4c7e7bad7d606bc513aa1a51c05f67c3263502f8919df88f0

Size

83.44 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argoexec:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argoexec:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argoexec@sha256:b08960523099fd2919eed8dd92be34553d5a50d5f38a061c82d8b96d3201fe7b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argoexec@sha256:77bd43b1970bfae8096a24fd98c340c3d1bfebbf0beff45e8ce43e8a26cdc184
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/argoexec@sha256:3d8f8c8fb78bd92b65bfc7d50bb6481e1fdd1f4297423819059562c4e19a995a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argoexec@sha256:a7fa70a948ea5adff1f6b0b3690582f6a3c17e03390428b843a926fef3e50675
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/argoexec@sha256:f1ffd96e745893c815b6d1394236e15e898dd7a9833e0fac98d4be5d8ba0f685
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argoexec@sha256:6e3d3fc21b7500e227bd694b6d3d1815b42ec3ce347a417c3659c87b8fbe68c5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argoexec@sha256:af44429d843da278e74485af974e413346241e75a94a46a5fe15f96de974327a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argoexec@sha256:5e5d43f06117fb6d728691ecd59da42ced3e770b2fc636812003006c5bae17b2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argoexec@sha256:7ae2e0ae826290f8138c277715551ae475f82ec276e4dc76563dd31399ba936a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argoexec@sha256:64e23bc9c2cbf7e3ec55d0d529a2af227e10372940cc4e59c18231ddeee8a87d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argoexec@sha256:99ef5909c0a3fef5b7f503fddf0222dbc84109fda45fc5a1422fe3f1fba0799f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argoexec@sha256:7439768dc80dc46f8b7c467b595f21aea2b41ec766475a14c38e9b5f1a7d244f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argoexec@sha256:7ff3679ba0f1fefdb6c75ba5ad2ee4a5604e3a233951674ee78edcd351eea014
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argoexec@sha256:32bec4600a7579c91e740834a13f7c4e37459dfa7d0fb3f6c01058fda1d48cc1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argoexec@sha256:ad2bfc3ce19e36a27401bf00845a5b65d8a6357baa85cdec6434c585917a1db0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argoexec@sha256:a83b747574fc77e9c4e20e207b5d29d8c6e87e1445734ae5a872757aa61c53c4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argoexec@sha256:104f2b99eb07f05c622f489daf6894d178dda82502d4b6b3fb1e35ea7ed0bf76