dhi.io/argoexec
3-debian-dev, 3-debian13-dev, 3-dev, 3.7-debian-dev, 3.7-debian13-dev, 3.7-dev, 3.7.18-debian-dev, 3.7.18-debian13-dev, 3.7.18-dev
sha256:3d2162e97a302f3d8394ed2c6bfddd597853309db4177d2ec20befdf46bf7511
Manifest digest:sha256:72ff8d7760ebfa4b3dca5a9ec78f96835beace99ab84d0576073312f45e68875
Size
82.60 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/argoexec:3-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/argoexec:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/argoexec@sha256:188c049ec84b6bbbde08e7b83a81edbafee7686d738a1ffc5cbdfa3b8aabbba0 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/argoexec@sha256:3849e5a0a7bc58c7c1f78d34789237dcb3bfac4e0a00897e2143c35fe7dd6ec4 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/argoexec@sha256:8d24a51f594bcd85f84ca50f7515b0e0f1d40eeee865b69bb43b6fc918a2b5c2 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/argoexec@sha256:ab3e6e5ecd8d421185411a7de842cdb0c1b07b1c51ba728b5b8f4b9f0bd99f3c |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/argoexec@sha256:c330a93be4d04edc267ce402be3f2b65028c3a0396c28f39cf8579b140050121 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/argoexec@sha256:139727bed45521b5a52040993daa1149b8443738e29ba26115b7dfe380b67c17 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/argoexec@sha256:2b0211ef253513f1f04f6c8b92d725dab594e27abaffe73593a7f07429f4b783 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/argoexec@sha256:937c5356733e0bfff7b681bdc0a78365c0f116b987a81fa8b48bec540ddb5b53 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/argoexec@sha256:498a5f04cf664a4618a8a20852c65a6f10e37a97bff4c4fd0c87e87de354912b |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/argoexec@sha256:e38b4593451e57eaeead2a9df320c4fec5795fe7ed8fa48329fa63067b5afd61 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/argoexec@sha256:8e44496f7ad60b649ed4c4b4955bcf46644355121aed2a63f9b113c8af3fe283 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/argoexec@sha256:40d8f096ee8831a91a69cd8c6812c97ddec48e4476e26f1f05bf9d908dfa29d1 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/argoexec@sha256:6be6b131f2c28c73f60b92e0e9ebc033a06afd07886039885561c74c8b9fbc87 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/argoexec@sha256:aaa949684103a6adac5d26990bec805bd69cfc8a64eaa6925412ddbfe1e34c1d |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/argoexec@sha256:d4eec1e720d837ba61d36d20d391bf26d520d5aef262da1849a2badd126e3633 |