dhi.io/forklift-operator
2, 2-debian, 2-debian13, 2.12, 2.12-debian, 2.12-debian13, 2.12.10, 2.12.10-debian, 2.12.10-debian13
sha256:b51a9b63787acf09099c34cbd9db1db44d4fa5e0a87d4d1e752aba237fe5c834
Manifest digest:sha256:71c3dc81b4bbca2b3623d2c0e86036423304091f18481f54bfe3bd523af9e154
Size
43.88 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/forklift-operator:22. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/forklift-operator:2 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/forklift-operator@sha256:13b5a43545887d4027b2427905b5fc3338fedd8df0408b8b10aad0fb9a5b5d43 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/forklift-operator@sha256:8455125b3d9b50c4791025891560cdc491155696b74ea086a547c7324fd85958 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/forklift-operator@sha256:35fd95b20a58787e93beb9087355699282f4716e036d7a95f610bcff7565f3cb |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/forklift-operator@sha256:5c7029f3d9cba4bc241bfb154b838413bf910951a33cbd4d235be66416cca4ed |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/forklift-operator@sha256:bd9b507200c5702678b9db7b21e2f39174a9b67e93e0ce21b3dd8a624c891c68 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/forklift-operator@sha256:9935a0dc37f2cbdd9c4dc6d60b960cf971b22edc710994341c385078f2ea06a3 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/forklift-operator@sha256:f6e28fa9ed525fe6bc0bdff4e3e52713ef6f0ee40236fe2f3a6a8efed4b9caa6 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/forklift-operator@sha256:5741033c3c6129de514bc4987d64c49bb9013cf3b9f675c01c6742e775f07b82 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/forklift-operator@sha256:93aa130db61e24c83d80ff43ddd714106491969b4e2e8ef322ed2ba16c1f7fae |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/forklift-operator@sha256:08b6af5a36195dce29ed0cbf27e7b81e719632e8ee18f3ef14dd733e66a485c8 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/forklift-operator@sha256:43e05d0b3a094b64aefdae20d51517605d86ed55e3844615d479f9bf9fe14275 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/forklift-operator@sha256:3f6776ae1fc8f25cbec503ea98595b0874517fbad1ba84431c0789c4fdafc4ef |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/forklift-operator@sha256:68ba7cb015cbfb6353f2a860cd814ac33b017454544c7522557bdb15f7a0c417 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/forklift-operator@sha256:c33046b5c94236d248a43f0ec6565ce776e623676e2a26be7d24732b5b6ff091 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/forklift-operator@sha256:9c1895f29e9a785b8a5c8e42f6bda89c7a0eb0ca9484d0fe3bb93f115fbe1864 |