dhi.io/argoexec
3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.7-debian-fips-dev, 3.7-debian13-fips-dev, 3.7-fips-dev, 3.7.18-debian-fips-dev, 3.7.18-debian13-fips-dev, 3.7.18-fips-dev
sha256:9dd7a9478a2e0abfd90712e1c51e9574606bc41bd3ed379bef65bdf22eda2a23
Manifest digest:sha256:a68b79a0debc5135b13701e86f0959d82c6d12076429e0b6296e919b48a2406b
Size
83.44 MB
Last pushed
5 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/argoexec:3-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/argoexec:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/argoexec@sha256:6ca0547d78eeca3f8cb2cf33dfbebfa25cfe840cb8d0073a0148244cfe4eb4e8 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/argoexec@sha256:a6fbdb30d7c31eb5c340f86e1aa2d22a4b73f28dc765121328a92f2bb74d48e0 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/argoexec@sha256:a8495c8fa47ec7d5eee725d99ac6c1bd4c665cfd873043277dcc162aa7bf313e |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/argoexec@sha256:fc4428577886ed41feb35d8a2e992f9658d7678b2137b8f49935791482762d24 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/argoexec@sha256:41e02d2f4dd782f014a227bde02439f81b57ceddf56143d69418678d4b3dd357 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/argoexec@sha256:8a313d512eb0e3d368331b7c778d1b95159cdbfa2c15084d278f7b82ae5d88f9 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/argoexec@sha256:dae5be005a7c18cacfc93a9e0f81ebe03dde12fa44b04406ea72e1ed1f3049d3 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/argoexec@sha256:9502ba82b241fbe20cd936be3512c3998e66f016850533f696828670f20fe91c |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/argoexec@sha256:bec4271b6f2e6705d38de28665fa582417a88daff18e4c9154d267e72679cfb0 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/argoexec@sha256:2d24c0a43215522ac890336e0744e43e2f6647291db34e7b80c854664bf87d84 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/argoexec@sha256:72f0f7388476f7b7c739eed510a47fafb84e8a00e81618816e9e78c37a93b48c |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/argoexec@sha256:bb6b12b225d4f7613385af39fd9abaf93fea86c334358517b8d2fef2f2750018 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/argoexec@sha256:e1e954788343f39cc384669bdecde1629f0146e0541f854a31cb17d0d40491d6 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/argoexec@sha256:9bd09c76ce29f35e9ab7f58c228c0f7819af7d148d64d68c0d6c12b96758f5d4 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/argoexec@sha256:b9217517dd3d1e6b3398cd56facf9916ea1bef4351a6766e3b343384a6a8e25d |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/argoexec@sha256:dbf85ab9026363257f3228b542e7dd99e6968ac56da32832abd252049c8c86f4 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/argoexec@sha256:0570bd2e4f886726968177b5c9bf03561c093f39df82f8aa3981966360402213 |