Sign inSign up
Argo executor

dhi.io/argoexec

Argo executor 4.1.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.1, 4.1-debian, 4.1-debian13, 4.1.4, 4.1.4-debian, 4.1.4-debian13

Index digest:

sha256:27a67952810c70cd85e3ecff7bb995e2eccc2bc6fc0333aa84c0aa3c215651c2

Manifest digest:

sha256:8abaf4dc7f2f8562499c82c9b2e790a8850baf06288ac1f7f7077feb982a177c

Size

61.14 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argoexec:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argoexec:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argoexec@sha256:674fe2acac20e80d114a9a02741d8fa53b06884b73617004f1c0e85613e256f3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argoexec@sha256:0583a054c7f7eda1fda1511f97639dc572da9e1d053f354b0740d9a1ceb15538
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argoexec@sha256:3d0f59eb7b92b86b7cec058588e039849d2000758c5fa010fdb78349f5b87449
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argoexec@sha256:0d4bda1b7cdc4c1d0d7d3998da33b80d02faca28e38928fa28e79161f635dfbe
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argoexec@sha256:e5bd35443d23cc92e784319be3b369f9e60772614d1c765fb4c3be261e7d908a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argoexec@sha256:705e93c64882913dba91825c8b8a67fb3da99199630a2c269bfff69020b65f8e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argoexec@sha256:4b56e39e969c06d0d36c38caa5b3892e0de5f627350feef7a7d78121f31dd078
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argoexec@sha256:9abc2078846530afad8e76fa3657ddd680f2146b6eefc6d1fb2ff98e4176a8b8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argoexec@sha256:07298983f8a0af277a436e0507c62dd01981f51b41b5d894a272d80aa6ad0b26
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argoexec@sha256:0b8557e5a239310ab100747139207a24cb6e9455c4389f89135b13d2aa411935
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argoexec@sha256:0fda32a12d1a6eeff3a6dd8ac2d834be2b3686dcc4b5b4734e925dd91547a6bd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argoexec@sha256:e572a8bf4421fe5a39fe2f228970ee7111ae002e31b54df317a9067533984458
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argoexec@sha256:4203e89d639d82ecba043db8e771bb2959d8b43fb591c01ac0449aab418372f7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argoexec@sha256:8ecc5abc2ad377e12777c582540a43b100a183e974dfdb84d648459f6d4711b1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argoexec@sha256:c41768fcfdc31c108508a3cd65b55e0efc56ef167598d84a1f7cc55414b1c057