Sign inSign up
Velero Plugin for GCP

dhi.io/velero-plugin-for-gcp

Velero Plugin for GCP 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.14-debian-dev, 1.14-debian13-dev, 1.14-dev, 1.14.2-debian-dev, 1.14.2-debian13-dev, 1.14.2-dev

Index digest:

sha256:8fa471713e84e12639af38b7b158effa9b7439a11d37811eb1651dfc20e8336c

Manifest digest:

sha256:ae45805fc49c794170a65f592c1748140dc005f960a574c83dc7f4eadbc147ca

Size

41.36 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/velero-plugin-for-gcp:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/velero-plugin-for-gcp:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/velero-plugin-for-gcp@sha256:c657f242792e945de8fcb9e12e1e4e4abaea1893b9e19186de5e6a8c3d9e3ff3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/velero-plugin-for-gcp@sha256:0d7e846e8ecfdad5c4ec1b7a14c3a69f17068260ba2b70a3c4819cbe25b3e59c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/velero-plugin-for-gcp@sha256:92de7c1d5499ebac9fbdc1ab243dcb0cc88dfeb5c6d564391d589d606537bf1f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/velero-plugin-for-gcp@sha256:7ad6014e1b2a2202b02511996f3349b5df39386bc8a2eb52e048cf61ce006ff1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/velero-plugin-for-gcp@sha256:028580b2e9e994154b7db5ab2cca6dcee4967c5c9cb3ec320975b61c07d1298d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/velero-plugin-for-gcp@sha256:dbde63fabbedd900e6ceab50e974b0600fee77b171ca550f4d1a81d0ec467e3d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/velero-plugin-for-gcp@sha256:6d67f723ee4381cc94036f3034c8a0e5b1f366ea142ce6423f12523050ce433a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/velero-plugin-for-gcp@sha256:6aadaa6eeb1e86e106d7eebd57694db1bd4857ff8c24da5322562b5d28bdcb96
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/velero-plugin-for-gcp@sha256:474c48ed105b57941cd4a3adcd28359a069591d9c35868888b188c9bc8f355b3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/velero-plugin-for-gcp@sha256:72a36360e2eecba331684aef1934935a3870a5690d95f100b5e12c0e0ea68ed3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/velero-plugin-for-gcp@sha256:52196254db7b1166d3afb51e2f25b781a80ae43ffd7f8f1f126eb88397f7748f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/velero-plugin-for-gcp@sha256:1037edd539c92b7ebb3c6937fea70199adbfe4d1c058495e89c36024b19c58c4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/velero-plugin-for-gcp@sha256:f5c845fa09378bbce2518f765f3ecca96767e3515ef4dde1db8a49b0f60dde08
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/velero-plugin-for-gcp@sha256:d834dfef0464e7b71c149bfab0be1870fe3065ec91770ed490f6070d54327aa0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/velero-plugin-for-gcp@sha256:230db3fcc1f124005f75702b71cc61b84f9a8b941218801b57e8487d02c5d00d