Sign inSign up
Argo executor

dhi.io/argoexec

Argo executor 4.1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips-dev, 4-debian13-fips-dev, 4-fips-dev, 4.1-debian-fips-dev, 4.1-debian13-fips-dev, 4.1-fips-dev, 4.1.4-debian-fips-dev, 4.1.4-debian13-fips-dev, 4.1.4-fips-dev

Index digest:

sha256:f825ffa929ec7948632f7284685eaee9fd660b6f21339a04e295d99c7ddb68d9

Manifest digest:

sha256:5f1c9a4a831e1ec9db06a96ee691ccefd239b874f654b6f67019b3d3e332d35a

Size

84.36 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argoexec:4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argoexec:4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argoexec@sha256:57e6a216c7873a713c5b4da92dbe035f47ff9c243da43fae81f0af1bb9c6b972
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argoexec@sha256:00662393193e8350e8104c72a26ae013590b3525d6cf41f814636d1f16a75a5a
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/argoexec@sha256:841116ec421cef459b687fddc39e273a90132b1303bbe2c54cd7fd9c59d61e17
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argoexec@sha256:6929c6ee51a793803ac74fc1d80e29b49f870bfb2b8ca919d57c35ce3fb8a67b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/argoexec@sha256:4c4e8b8dc180357135dd9c01a9238e6672d430b54fc5e444f3398989d72faa1b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argoexec@sha256:f74f3ad28fd454fd981e27fb76f52adb837952aa163430ffbaa090485c9ab726
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argoexec@sha256:c981c738695bb5487d34bc3d267c31dd8785f6793b2fcf70605da0f78acc9b3d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argoexec@sha256:c7a3d23c2e94146961129d96c31a4cd42bc375a1eb317b3084f20cc382f84ebc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argoexec@sha256:2ea87acb218d85038d70e00706ce5afc6795002dca2cdceb50100fbf7438ef54
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argoexec@sha256:8b2f87af41b6117a4bfcab35200e76c227bee9884306d8b2f207b65285f1b415
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argoexec@sha256:92c36e461227d7b6182854b3e8674fe8b6a0c3952d5a8f96ad02cc0e8a2cf854
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argoexec@sha256:5fd3ddaabacb94529ee70159bc8bc6acf72c5b9ed1ae13c8e88eca5229f290a3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argoexec@sha256:676085d9245aa957004a28f2931ed89b359dc35a091b4ebf2911d1b3d51dff28
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argoexec@sha256:483e877daeb56606be95c33825c4e7d17944ba89bff2c09c491b96ca84cd599b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argoexec@sha256:225a6ed50d08298d04cff96a7ccbacc347c33d7db10c01b15ed523b0efd0f32d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argoexec@sha256:f2b687b01749edc3278db254ff27af36e724839727d13ea3e3ca172b8aefa806
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argoexec@sha256:8f0ffe44ed687a109549c367482407d7c8b279edfa4f213b52a0696affcf4199