Sign inSign up
Forklift Operator Index

dhi.io/forklift-operator-index

Forklift Operator Index 2.x

CIS
linux/amd64
alpine 3.24
Tags:

2-alpine, 2-alpine3.24, 2.12-alpine, 2.12-alpine3.24, 2.12.9-alpine, 2.12.9-alpine3.24

Index digest:

sha256:1542ca9d905b80a6b95e72f6022f8132e920eb8a9f36367e35751497444b1503

Manifest digest:

sha256:650a0b93a38b34bbc3e5045f047101fdd1f44fdf6eddc83bafdaea5ebac0f834

Size

24.46 MB

Last pushed

1 day ago

Vulnerabilities

2
8
0
0
3

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/forklift-operator-index:2-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/forklift-operator-index:2-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/forklift-operator-index@sha256:62386268c8e95c2bdd4f5474110593a68e56eae727d8f3563ad9894e330ea587
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/forklift-operator-index@sha256:b4f1f454dddc9646de0e4566f573b3d0accf115d9f0eccf2f3d6788f6ef2e164
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/forklift-operator-index@sha256:8e48098b62afe481335b31bfcb5b3b6be3c74e8c9efd567aa137a942ccbfcbcb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/forklift-operator-index@sha256:06d5bfdb2ede557881f58a34f5b9f9b024127d0eb90138ebf5713a5185ca8eec
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/forklift-operator-index@sha256:c7a43c463446279ad7c6086829ad3e40d89a943d303c84441c917cacaed5f19b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/forklift-operator-index@sha256:778082cae4340d13689740347495dafcc29930660c5a1e4d51d45cf78254fa0d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/forklift-operator-index@sha256:e80aa3c24cab9d3299b829db59fcba718c99c53872ea8070c8a57abd21201f9c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/forklift-operator-index@sha256:f52af821643f728bf5eb0b3e5773dc4147683ef0276bd0fcd82cd614df9a3ead
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/forklift-operator-index@sha256:8b9d18982268b1057a5cdb5c9d2f53747194c7cfe6f3eea470fee27efa9ae1f1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/forklift-operator-index@sha256:ff3433e975e399650e0bdffda5877766028a0018ec9cf2e0807c99b78000e428
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/forklift-operator-index@sha256:fc7426cb6b87075bf93f2ac44d5a3b87d7fda7289577f479c74ac0b7b86d3a3c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/forklift-operator-index@sha256:d4299f36c79cb65194ae454518904f40ccebc54d7eaf5bfc99af0b6a005d4727
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/forklift-operator-index@sha256:92c52e7b8990f665c9f8b899993da6a684b7adf9e96a503bc6599d5561aa7e58
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/forklift-operator-index@sha256:d4333c67ec5b69b36d431e9a02f7229f5b8c034ab8122b8f7799fcbccad0d2cc
SPDX SBOMhttps://spdx.dev/Documentdhi.io/forklift-operator-index@sha256:6398cdc42e3b5dc89ce426881c8c9109cfcbf463b5e4278f47a4887c37a4d98a