Sign inSign up
Argo executor

dhi.io/argoexec

Argo executor 3.7.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.7-debian-fips-dev, 3.7-debian13-fips-dev, 3.7-fips-dev, 3.7.18-debian-fips-dev, 3.7.18-debian13-fips-dev, 3.7.18-fips-dev

Index digest:

sha256:95719c9cbd2d556d999fd99ff7b53a077439128e5d296f231d6ec17123918788

Manifest digest:

sha256:e17caa7a5c7d551da6e4825d43063034b9496b341b3b4d5f46d1db425d25e740

Size

82.90 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argoexec:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argoexec:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argoexec@sha256:cb2fa0361e4a657f91422be0f3967a1c6002e1f80d1d0837025f09d593bf9fee
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argoexec@sha256:dd56f7831a943b2246a9229eae58bfebff960c42484c696207b1eefcd057e3cc
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/argoexec@sha256:ceb2d0fd1fb766d8b239bfd9de45c67f2d77f3cc2d73f8eb2ef19ae090e2902c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argoexec@sha256:b28a08f6baebc39d2f9ccbd99863b8913edad3f79143dedc4f899378a6c52fb9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/argoexec@sha256:be9813e03f07806fc4aca077b156b49dc302588d200de3ec332f785bd0698db1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argoexec@sha256:8e04df9bcf1804d7dae96a7285d7b77c9fb3084eae54068beda16ccd419d6ab5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argoexec@sha256:1c66bccaab05fccfc332dc3ae68c0219531379827a6914d3ad0f357e741c3cf6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argoexec@sha256:334c3d96f6249f4d5eae3b0be7bff4f535bad30ff8104f998b484d38e6768efd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argoexec@sha256:460b0eb77b6ad2c0f2f5c15d281dfde96f60a3e45091e2aa6965b7147d3f3fca
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argoexec@sha256:12473d2cf66971d2a26715e6676ac517bd9dada7be17852068af5156b5a7ba7c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argoexec@sha256:7653be8457151ff7ef227cdc5dd2dc11a5afc9eacbf71e2343c53f34a4d191c0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argoexec@sha256:39da76dd2d1b9535f7b53343e0e6d7127c8c0fae5c4d9c3066ae99a2853b5546
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argoexec@sha256:b5452ae3bd5d7cec22bf421c4edbe8be96722a00a776fd73aad077b398d8b2aa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argoexec@sha256:d507cdbba351d9d9da85174bc4b3d0b4f87ea6541a854f8e6cbfd2aaf53eac34
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argoexec@sha256:f240a03bdeabd105c0cd13d72461483a0455e8943446ae737b069b2ba3ab8324
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argoexec@sha256:24d94330764c814bb49f53d6102530c98230854fdf73a939edfed5ed2fef9ee7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argoexec@sha256:9c2c865cc7f662c585fbac691889571645dabe42307f33666e2389c59b8e02a1