Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.5-debian-dev, 3.5-debian13-dev, 3.5-dev, 3.5.0-debian-dev, 3.5.0-debian13-dev, 3.5.0-dev

Index digest:

sha256:4d23eeabeb738f0cfdc43b26d0564cb1f5057985006caf6e3b60618c8ca6ef1c

Manifest digest:

sha256:0314f898f589532182b80c31517c8933f6649dc4607b97dad1e32154b0ca20a2

Size

60.17 MB

Last pushed

10 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:30c7d43142dd2e520ba2af9ddd67b03fb1c5a6b03a8dd123c01c60d97db5a204
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:44ff9f6269405486fdedc4de405339f832090d2e4bd26d67fd5e5dbef85e91d9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:4015b79c42fc4eec7dbb2a5914ef34216e5d357f37fef66efe1091f3162e320b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:9ae34bad7d5110529e5b9b1beff8a4ba574bc898a6d0b725faecb05263c6a93a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:62cf5563b09f3d2a5c66104344378664b6dc1865d218ee99c60d3f9bff6f5a05
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:7cb984008283372dfa2769ba0028d4aa9552c99134467350b3305a4e4ab1b4ee
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:cd8635c6c14eed87747a79e8d9e4efe7625d5ab5e1c0a403b7af6e1e787b6f03
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:46ffaa3db0c4b8fe6f1501297707efc0efdfde232f9c91ed47cf51707429e149
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:7014a68c46311d415e97069b014633ba0e0bd67be9e8ac0c9aa57b500de4ac9e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:cfb30ff50e31fbee15732739c1bb1c89491c56302cee45d200059e4d173cf962
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:2cd31e46cbf99d2c54f4dc76cfcf0b10a5930406ac33a6eaf1c16e6d77be4065
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:2a2cb16c15e61de58935ef064367134b61522fbfd7feef44168d3d58e9c4acf6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:d755165e0780452e12a579b7af2c7521a83c72dea4441bf827e6031db84bd4db
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:b097ec2eb08d9dad2864b1d4c538092d8acf597230b354ef21f6701b47674b5f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:0bb7e8bca705c689c1c632c8f4899921d3c419cd2067af9f69c12fa3dc25cf9a