Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.5-debian-dev, 3.5-debian13-dev, 3.5-dev, 3.5.0-debian-dev, 3.5.0-debian13-dev, 3.5.0-dev

Index digest:

sha256:814a573c4e72e4ee897ceef0a1bfbacdc328f5dd0a4e21a05e1ae6358ee2c913

Manifest digest:

sha256:a24582d68e28c75f1fb93ae0592d1a5c274aefb08125e3f4a859da31de38e291

Size

60.17 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:383c6cb1ee3efc3a98b912f5d5d55925b991a4457f6c05f51a6cd273faca0655
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:36fd048709650f5e5b1fcfaec62697ed4fd5e73005ac74c8ae6845a86924b60e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:29b5778e12092ffcd24ed6ed92cd1939c8ec5f6061caffc74d735389dff3f747
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:a8f966fe183f5633b519a4a7c62304871e69aa430c9d255fdfee8906fba17351
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:f583d1a648262496e0f7bea83e5d82b0504b14d24a3a731d01eb5644b536641f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:f5c83994920f7567c8ef5839c4055d71c2dcacf419537a9edcf1953820e7ae10
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:072f38d541b137ca73af993a529809b16b4be467f044207e94bd701cd72f3fca
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:5c8904a127d2ec78b2027c0ca3ce7bc1a646d3b2917497eef37def987c6eb170
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:259e0722d562d53073fc1dbeb5682b53005efa4b9a4e322f6b23b4b4cd6a8a2e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:489c8122aa35bb4b8f45659138ad1cd81c914dfaeec758fc0de7788c048b4c6e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:76bcc7c552bc70f0cbd8e345e23329a9e23707e7a5b7a465d4a0e49bba296c52
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:947a6ec6efcdd828c750d3f1d96bb25ea8513ec4e52ce85ce5976556154ebfc4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:e9d6436571afed4cf8c1e10e8fb2bce43d4244cee825c804f1a7637e2a1b5dab
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:4bb4fc026fcc5ba3a0b95463680b0488ada4b67f1ea4c3a6c15086ccece83a40
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:4159a18ce319e5ef3bf00ae1defbbce0e98e54a0597b1605343108702dfaec85