Sign inSign up
Forklift Operator

dhi.io/forklift-operator

Forklift Operator 2.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.12, 2.12-debian, 2.12-debian13, 2.12.9, 2.12.9-debian, 2.12.9-debian13

Index digest:

sha256:91acdc349505b3dfd69b61b0388edd50526452cfc70801fdc9b054ef72921e2f

Manifest digest:

sha256:b8ccd711e8201b38e7b159ba66b4d49c648ad5143f2dab2fb17dc0f43bfdaa81

Size

43.87 MB

Last pushed

11 hours ago

Vulnerabilities

0
3
5
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/forklift-operator:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/forklift-operator:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/forklift-operator@sha256:b15055bd7249fbd90a5861f3733027da5bf12e1b5be500c3bc6faffc3edec350
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/forklift-operator@sha256:883cea21c1401c808d3255e46d51a7ee4e5eca6c4df542e5a40a5f342bf7ea5f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/forklift-operator@sha256:00dd4135ea50f7d41d4f2eb9f510c6d9ba0096d294c9ffb88bfe00a3c75f0aca
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/forklift-operator@sha256:88c5a839571e03d20ba45daead62fcbf51366c2fbf3a6a1a88a6762a5a76f850
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/forklift-operator@sha256:e6b501e50f77d6d44a1f6af86840cc3e6ed56d18435d9b6ab2213d34adff98c3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/forklift-operator@sha256:3e08c52df2212825bd8bac53001b89195c2082bb5aa777e52d571e0eb307082e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/forklift-operator@sha256:7e5786f4f9d56407721ef47b9c2015dcc7499197a8c9be47a94937d794586819
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/forklift-operator@sha256:15e3abb339941237f89a2d178b0d4a7fa47bb6001adfb00faaac98dcaad55efb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/forklift-operator@sha256:97780fe2691405d2ac4f35374ffd9da2f0d0ef711109c18e70f7fc074c600c44
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/forklift-operator@sha256:0f732cd46b77e82f5a7dc23d8b6cb10b0c3002ce84997aa75552f3c9af06684f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/forklift-operator@sha256:8dad91d661962eb0ee9e244c2d2c373cea74d12097f64f84c58e2a36eac08e88
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/forklift-operator@sha256:ad0ba46f3177ee95c19cbf9a355625ba044c36ea6e0b5ea025ac5662641ae260
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/forklift-operator@sha256:b45ba3621ee4fa10b6a6d364f481c0014bc18375a8a99a79f23f8acd04344661
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/forklift-operator@sha256:16a9e7e2b7843062c9a34be2109f0eb7a149e3a669ab112b8ef6396291f9eb0b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/forklift-operator@sha256:2f2c8df8652890276c16a8a92415929989fab8e10f6994da12843477a6fe4f94