Sign inSign up
Argo executor

dhi.io/argoexec

Argo executor 3.7.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.7-debian-fips-dev, 3.7-debian13-fips-dev, 3.7-fips-dev, 3.7.18-debian-fips-dev, 3.7.18-debian13-fips-dev, 3.7.18-fips-dev

Index digest:

sha256:9dd7a9478a2e0abfd90712e1c51e9574606bc41bd3ed379bef65bdf22eda2a23

Manifest digest:

sha256:a68b79a0debc5135b13701e86f0959d82c6d12076429e0b6296e919b48a2406b

Size

83.44 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argoexec:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argoexec:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argoexec@sha256:6ca0547d78eeca3f8cb2cf33dfbebfa25cfe840cb8d0073a0148244cfe4eb4e8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argoexec@sha256:a6fbdb30d7c31eb5c340f86e1aa2d22a4b73f28dc765121328a92f2bb74d48e0
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/argoexec@sha256:a8495c8fa47ec7d5eee725d99ac6c1bd4c665cfd873043277dcc162aa7bf313e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argoexec@sha256:fc4428577886ed41feb35d8a2e992f9658d7678b2137b8f49935791482762d24
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/argoexec@sha256:41e02d2f4dd782f014a227bde02439f81b57ceddf56143d69418678d4b3dd357
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argoexec@sha256:8a313d512eb0e3d368331b7c778d1b95159cdbfa2c15084d278f7b82ae5d88f9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argoexec@sha256:dae5be005a7c18cacfc93a9e0f81ebe03dde12fa44b04406ea72e1ed1f3049d3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argoexec@sha256:9502ba82b241fbe20cd936be3512c3998e66f016850533f696828670f20fe91c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argoexec@sha256:bec4271b6f2e6705d38de28665fa582417a88daff18e4c9154d267e72679cfb0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argoexec@sha256:2d24c0a43215522ac890336e0744e43e2f6647291db34e7b80c854664bf87d84
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argoexec@sha256:72f0f7388476f7b7c739eed510a47fafb84e8a00e81618816e9e78c37a93b48c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argoexec@sha256:bb6b12b225d4f7613385af39fd9abaf93fea86c334358517b8d2fef2f2750018
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argoexec@sha256:e1e954788343f39cc384669bdecde1629f0146e0541f854a31cb17d0d40491d6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argoexec@sha256:9bd09c76ce29f35e9ab7f58c228c0f7819af7d148d64d68c0d6c12b96758f5d4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argoexec@sha256:b9217517dd3d1e6b3398cd56facf9916ea1bef4351a6766e3b343384a6a8e25d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argoexec@sha256:dbf85ab9026363257f3228b542e7dd99e6968ac56da32832abd252049c8c86f4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argoexec@sha256:0570bd2e4f886726968177b5c9bf03561c093f39df82f8aa3981966360402213