dhi.io/argoexec
4-debian-fips, 4-debian13-fips, 4-fips, 4.1-debian-fips, 4.1-debian13-fips, 4.1-fips, 4.1.4-debian-fips, 4.1.4-debian13-fips, 4.1.4-fips
sha256:cec8d83921c267c4eb49bf07210c5f4f92cb799fbe89fa7948fb4be393a3bbe2
Manifest digest:sha256:4b051f71d98d3740529fbd0467d400889fd2bfef45f591a26c55f59f4f94cb3b
Size
69.32 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/argoexec:4-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/argoexec:4-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/argoexec@sha256:09470f8bc59f24ae0e44dc703e506037542602de9544221f7500bdc989f01f43 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/argoexec@sha256:63d3dba5a2939a84434165ceb464ceff5751d862e6a62d389360b534ab8843b1 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/argoexec@sha256:bb71f58dabf321082b59c50262ef225368a69428a5255714c39917fe71e7f746 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/argoexec@sha256:53a5ccbea07ed0bc9b4c6aab31b16ea7f6471ce8bf61fe39c70a5f142911bf79 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/argoexec@sha256:16246a29a9afc22cac3486de9961351f2fa9094eadf4f7193213d1a106450ac0 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/argoexec@sha256:6682e74bbf1fd3a976509274c62dd1892337d3f2291f1ca64aed1dcab2ba3e26 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/argoexec@sha256:492e92946057c82c96dff1a2e7767df057fd4f945a72eccfadae1cc862140fff |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/argoexec@sha256:c6bfa1ef552c3e16607e83d90c3218a8937ae89aa8898ae95108b64d081c25d4 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/argoexec@sha256:4a1c854eb2089f96f980c51b6e40d88cd8ee6b30db3a7be76cafb7f6c316946f |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/argoexec@sha256:2ab31d258fea0be569ba844251e234a3927d96e27c9937ae7544cee25dc82d49 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/argoexec@sha256:3ca6923cf85c00f1eae71f37dacada18db3711b35cad068852b17d7bca87ac6e |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/argoexec@sha256:5bdee92678df8fa0c670e0de164d00fce32db7cfee87fc256d3313dd386cb3da |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/argoexec@sha256:c9766c231a13e75be4723ad6cbb9ab300e46f0a29f0b964dece41a0da9b05c36 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/argoexec@sha256:88d55cd1b490add2e06a501acb30d8d092eb37535c0710be08ba1da62d25cac5 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/argoexec@sha256:a3ba95582af1b858f2ea9923a8d26873d4564f30cd096e01efc84969533e506a |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/argoexec@sha256:cb4e2453107e25e2e41596232d7cabf620e0485da15d307fdb7de557cca5b0fc |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/argoexec@sha256:4d4f7b8b15e26a37907070ef6ba9c6a85ceb552ca80de729c440152e8ada4638 |