Sign inSign up
Argo Events

dhi.io/argo-events

Argo Events 1.9.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.9-debian-fips, 1.9-debian13-fips, 1.9-fips, 1.9.11-debian-fips, 1.9.11-debian13-fips, 1.9.11-fips

Index digest:

sha256:6a85529bed9f49972d70382b675cc919b40e35372aec99243e0c26979e8ff04c

Manifest digest:

sha256:8178c4d5c2b2735cc98a2e8d41ca8d0e184a201cec47b1382060c5f217954d99

Size

101.63 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argo-events:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argo-events:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argo-events@sha256:82a64d0405ab7e3ff15af1caf5d0cc320182f187ae96e4f5123e0f23043d5152
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argo-events@sha256:d0421ccef0ec2c6a0946656ed95daf8e9a22889b0df73adb91c7919992ef07ce
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/argo-events@sha256:a0acd4231f0d41dd08bda02112d3434c521990e1e350a6edfbe8d2d5483f806f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argo-events@sha256:56a281edf4b72ef01f64d312727891e2b0659663adbf82dfd85ab8f41481a7ba
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/argo-events@sha256:7757d720cd4549c42c764f710fda7c42fb31dd97ed1da688bc9dfe51d45f6ce0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argo-events@sha256:a679999966ef7cc1ea72300a0bb117b2d7688593bfc5d62ccb5863bdde41df2f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argo-events@sha256:a5f98a689125863e0fe2947a8e5690a8bf955d8497384816863bec9dbae04098
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argo-events@sha256:aada8f112eac3fac1af03435ed3296f3d0c1ddbc89d63adf82b706e52f846994
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argo-events@sha256:963d841019bbca2b01c7f95cac5d3fcab8e8de0a6d871b7445e314e0c8df2939
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argo-events@sha256:f6ddaff6df8806cc30b8f16f5275d361bb4706f208641750634738d996e73962
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argo-events@sha256:9df99925f09f13f966505f1671db15fe0d09e96b48468b3e955f7d5d3bc8f2b0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argo-events@sha256:a507eafefbafd73724dc9690e066496901061dd58e0dda9cb08c816d74a3ad40
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argo-events@sha256:e2b429d15a131606707618923babd8d4da51fed169fe8682f7e9d578d0bc1653
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argo-events@sha256:46a93f808337f3dc2fc985b8780ddc727d899c32566a2118c9a8adb8cd6dc664
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argo-events@sha256:ab25dc01538bc59019b94cc4fc183a6bc8faddd91d290e22d5645758e5147c27
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argo-events@sha256:2320e835db8f9b0d5ee8165a0323f73e37169861fb696204bb940b69d68f496e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argo-events@sha256:967708b854545f7b2db4431c5d33b7d0f080135ac4a4dc02b337812c7b4949bd