Sign inSign up
Velero Plugin for GCP

dhi.io/velero-plugin-for-gcp

Velero Plugin for GCP 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.14-debian-dev, 1.14-debian13-dev, 1.14-dev, 1.14.4-debian-dev, 1.14.4-debian13-dev, 1.14.4-dev

Index digest:

sha256:a0e736d5f64880d155accdd0bdd7c702b00958e36352761ce989837ffeb552a5

Manifest digest:

sha256:20d6a2c2c82dcc299d6f79debd213501959405452cf9a91fe1855effd9066e57

Size

41.41 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/velero-plugin-for-gcp:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/velero-plugin-for-gcp:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/velero-plugin-for-gcp@sha256:12eaca6bbf52ae35548b6d2c1579a8c3e1126885cd4ab8f5d801672b375e8de5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/velero-plugin-for-gcp@sha256:49781756881e4a4a9c978a99e9973f22483897665ee2595ff69a14482075cf43
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/velero-plugin-for-gcp@sha256:b76a98098a052e7979009bc444ed6af9dc4c28b6131a8a41f797624c27bb4bb7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/velero-plugin-for-gcp@sha256:f91cf30a7909adf4a7253523759283d0f909c362ddaa277fa2639f658c7913ef
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/velero-plugin-for-gcp@sha256:d0847aaf099ca855f8936edce576c5a44c701ceb7c17f2993f43d3b2f6e11c49
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/velero-plugin-for-gcp@sha256:f5656137b70069fe1a37bd880e886399a437c755875679d23fefbd760ad007a5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/velero-plugin-for-gcp@sha256:7131a31102ddb45b874ead6709a992ca008070d9ff95698a99f827e84baac14a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/velero-plugin-for-gcp@sha256:7a7476f075a9125a7f97b4c11620f24e309d8bc03725242cbcaff89aa7681a4e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/velero-plugin-for-gcp@sha256:a37213b0963d5976edb80503318d63a502dcd47e15fb1131d3a49ecec3c5d237
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/velero-plugin-for-gcp@sha256:4ee9219564046e7a77820a36e5973650e2b6afaad57e945c8fa77e970d239520
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/velero-plugin-for-gcp@sha256:78fc8590f3c81bcefd5a64665016917630ce0a7631f9d746262d864b85a41de2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/velero-plugin-for-gcp@sha256:415292d4278d46894dd400a19b3a93ba2996a4ba29887732f58b977f6c292d62
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/velero-plugin-for-gcp@sha256:5e776f4a762741a7d5b51ea7d379c78a558026fef93b498328803edd9b57c788
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/velero-plugin-for-gcp@sha256:0cd9c97eca7eae694a3a34262e19479f9e94428ca8d8fac27ed42833558c96de
SPDX SBOMhttps://spdx.dev/Documentdhi.io/velero-plugin-for-gcp@sha256:2edc15fbda8646f476414d00035f8ce51285981c56edee2dcd4364622f74f786