dhi.io/argoexec
4-debian-dev, 4-debian13-dev, 4-dev, 4.1-debian-dev, 4.1-debian13-dev, 4.1-dev, 4.1.4-debian-dev, 4.1.4-debian13-dev, 4.1.4-dev
sha256:e40dc2fabeabcc08b6d0092a47b3d1f40d67546bac63c1c8c14d3ed03324eacd
Manifest digest:sha256:6959fb54fd628db8b3a8a9ac76a1799b58c5cd707de450881a510939bb9fd695
Size
83.70 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/argoexec:4-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/argoexec:4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/argoexec@sha256:69d10074356c9807c1bea6ab2ddbf22e84704264a9e273b271667b9723397b6e |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/argoexec@sha256:f8bf47b0f25c36157402ed3cfb8a303485fa0fe59d0867a1d8a6e9ced7c518b4 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/argoexec@sha256:fd3b3e86c4d9a3adc0a32d3049305315a3fcce0dc10edc9359653c689d336bb1 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/argoexec@sha256:c1751df1a2ce6607c680cd284f6c18616ae9d1c3dada8244c4a4ebf488cc8c32 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/argoexec@sha256:a5a139b06ee983bbd2dbf36bdf2adafff0e0b533e000dcced7c7eddd9b6106f8 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/argoexec@sha256:fcb2e740070c785edd5a658d17eee4db3cc6c7d27b889eeac0dd89b6fa5c626b |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/argoexec@sha256:2f2e266f479841c72742dc6cdff774f988aadab7187a996b291f92097aefb799 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/argoexec@sha256:cc2f552aa69e950c2530111e343723ffc74b7eee18f8a5c2ecc47fa4c26f09d6 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/argoexec@sha256:a4b555b7a68b423bbc3afc69c86e4e8661249b662cc84a63c5c2b842ef9814c0 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/argoexec@sha256:d568c36cb8c59735dd92136484b003c2e2051e1c88638a210a474bc5d8e4c7aa |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/argoexec@sha256:d7356359bd1d27b76a756ba2160f27a16f36f5ef4c55c63af7bf76a6f2769c06 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/argoexec@sha256:6e04133fc76518b1e8185685b5e1fbcc5a086050b34f52d45384f6fdf4fcb85e |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/argoexec@sha256:618f2bc98f47703dcd79e817a706ac4f6234c8059e6a2890fd0ced2f0b6981bf |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/argoexec@sha256:3cb20c36e3a000b1f4d15de29d698bbadbbb50a1cf4f59427398eb238234cd21 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/argoexec@sha256:60e948dccc9e5fe9829db209f4e2051de447dbf5534f9af0109292c8131bb846 |