A narrow security-boundary image for optional, approved execution tools in the Hermes ecosystem. It is not a general remote shell, arbitrary command runner, or Docker API proxy.
docker pull afsharidevops/hermes-control-plane-execution-broker:0.5.11
0.5.11 is the stable release tag.latest is published from stable, non-prerelease version tags.edge follows the main branch; use it only for evaluation.sha-… tags identify individual source commits.linux/amd64 and linux/arm64, with OCI provenance and an SBOM.docker, ssh, approver, or admin modes.8750 and 8751GET /healthUse a reviewed Compose configuration from the Hermes source repository. There are deliberately no safe standalone defaults: missing/misconfigured secrets, authority mounts, user policy, or execution policy cause readiness and operations to fail closed.
Do not publish broker or approver ports. Never mount the Docker socket outside Docker mode; never mount SSH credentials outside SSH mode; never mount an approval private key or approval-bot token into Hermes or the broker modes. Pin a versioned image tag or immutable digest for production rather than relying on mutable latest.
See execution-broker/README.md and SECURITY.md in the source repository for the full authority model.
Content type
Image
Digest
sha256:476203182…
Size
48.6 MB
Last updated
21 days ago
docker pull afsharidevops/hermes-control-plane-execution-broker