dhi.io/argocd-image-updater
1-debian-fips, 1-debian13-fips, 1-fips, 1.3-debian-fips, 1.3-debian13-fips, 1.3-fips, 1.3.0-debian-fips, 1.3.0-debian13-fips, 1.3.0-fips
sha256:f7bee3e2132c5b0f81a2c1923583390c01511e4fdd2bf1a36a90905cd5948412
Manifest digest:sha256:4bfea32d0aaca80aa69649836c1bc2b5183bcc7c523a1f699c40ab974395e8fa
Size
122.45 MB
Last pushed
6 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/argocd-image-updater:1-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/argocd-image-updater:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/argocd-image-updater@sha256:9c2f034d1e32dad688c2f08b9f6ce9726d621cfdde604096d7d0edd3901a67c8 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/argocd-image-updater@sha256:71cd339d5e4b77c7dae3efe4a782b8d08f5f44019e4e89a74bdbb5fa25170a21 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/argocd-image-updater@sha256:2013a3b94770ac28ff107f3484e101b66f251b03d481daa63be2d0a1a1e1860a |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/argocd-image-updater@sha256:025e5b064117cf25f45261f0494f8d51a861a6fd2383995a22bbbf4e51bbeb15 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/argocd-image-updater@sha256:f2c5d9fc99913cf6dc907bcffe42d9eaac14995ba38bcc65305e7fcd5b025e07 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/argocd-image-updater@sha256:2b552f93820702f4ac72ca29f7c010d2668ee73a850966523110a1e65254497f |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/argocd-image-updater@sha256:0fb93cfb7ff961cfb690d8afd9e2727b36839af852cb3530e0cef9cd2af61d06 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/argocd-image-updater@sha256:44551a208b47b09439f6fd14cfaa0643ec0a7a362f4b12b9d56bd428375de28e |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/argocd-image-updater@sha256:e6a87b2a2cf40eafbc7f1784a9da996f67457d1acd98ece463d689bb02bac3d5 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/argocd-image-updater@sha256:c54469d380256d02c5097aafda3dd3fd00c917d2d27972da990431d1ba245d90 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/argocd-image-updater@sha256:bd75006009033156432c4fea3749f4c77df567f988d5b964989b371d5190a159 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/argocd-image-updater@sha256:83335d0ec46361826cd948870ad00f39b8f25dd5cea50a821ba58224fddeb10a |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/argocd-image-updater@sha256:d4f3675377247b565942242ccd056170d4cea9f7d72754fa1236bd034623b4af |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/argocd-image-updater@sha256:04321fbe077c78f5b1d651d0652e2ca4230cf6c1e3013a924170aaeffd435e11 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/argocd-image-updater@sha256:978acebd406d744376335f5d240476dc147652866f125f6804cc02eb60bfdac0 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/argocd-image-updater@sha256:d388fdda27812155de247bfea6fb3866592a9bef12acf8af9b8f4260085b5a39 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/argocd-image-updater@sha256:2e61eb024235f1b2599aa8018201080c772e762beb8742c2b61f6370f5c3e1e2 |