dhi.io/argoexec
4-debian-fips-dev, 4-debian13-fips-dev, 4-fips-dev, 4.1-debian-fips-dev, 4.1-debian13-fips-dev, 4.1-fips-dev, 4.1.4-debian-fips-dev, 4.1.4-debian13-fips-dev, 4.1.4-fips-dev
sha256:59f23498251544929c473a100ff0fac9311a42ec995149bb5146cc89a0aa6ae3
Manifest digest:sha256:3e62e2f1bb0f0ad80af834788c7f87016b0a52d7b5f6533b9a39b6b8e164ee45
Size
83.99 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/argoexec:4-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/argoexec:4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/argoexec@sha256:e6ef626c481b427a1d9b4b7bf803ccf7e04d2481c4ea1b11d1e8da6071f62f85 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/argoexec@sha256:6262302a812af42846372dba12c595328371df536174abcd30a3795f5a87ed43 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/argoexec@sha256:546b65cd480c42e554a2e8c984d1150448148c96d22a44074b5653ce41831392 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/argoexec@sha256:43d59989b972d78b86ffcdfa838881262a4a915a5b9ac9e88b97330273a131a8 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/argoexec@sha256:7cedb7384a9e3cdfc968e140ec329fbb1a47924c1a250d21844a8c560cae0c58 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/argoexec@sha256:eb64e4a4b8afc4aa1d1a09477f88072e7b38aaa4afffeb3042b9bbca08df3bdc |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/argoexec@sha256:78d066605e19d055e636fe52e32177d8c21c98e6290609de8f48360dcd842179 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/argoexec@sha256:e126c3605468fc4ce3434c46eb726ab13bd0274f074a5b50fcd1870ff0dec5b6 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/argoexec@sha256:3c03b0a19e37f5e859a00c541f95d344164bbde27681d1e1a26f37097d319b0e |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/argoexec@sha256:34ec7693453fa413039086497f064bddedd0686d8ecda6a28f4ddb4c7fd3f663 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/argoexec@sha256:3c600194290cff3fc82263cff7e5d87f63d07cfe1f994a0fdef94357eb50fc70 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/argoexec@sha256:6524873ed599e9b03f3cdc0594c5ec90b707313ff0e16328823f14b014c38f85 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/argoexec@sha256:a8e2852b7c8765f82d049e29de2bd4bbe48fb1c81785d2388bd2a517de3fa8e4 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/argoexec@sha256:1e385b434a3be8c8a3917a2a9726fa49abfc428ed9fa6c986bd1fca7434cbef8 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/argoexec@sha256:a50ece5b9feb24c103c40217dfca6fd377b2c5ea33421641bb605e8287d252cd |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/argoexec@sha256:bc021f30528fde52f0f54f17cc7a8dd99ee07ee0d61f34324719a9d999b66791 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/argoexec@sha256:124ca4e4644de6c638243c9c963737f28eed5aa48094eda0e8ca40900e6e184f |