Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.5-debian-dev, 3.5-debian13-dev, 3.5-dev, 3.5.0-debian-dev, 3.5.0-debian13-dev, 3.5.0-dev

Index digest:

sha256:a157af9d2a9e908c1c4db7e146412e1267c3853a23573be6e914d89c2db40eb8

Manifest digest:

sha256:02b1e704fdc41b8aeaf83adf5682569d52a148141c566c7c4ed987263b6de8e1

Size

60.19 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:b91b8f1336cf702054b87fdc2a0eff28189a693d99a8e17115332c1e3effba31
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:e9b7626c8a173c3e986c46eb96a41f06ee3858ae448871f0c5d896099a5010f4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:1d8913979cd3bb162c1bd55472f2d190f54aa23979d93a361640d658da1740d4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:d52f62636bdd748ebee10ae5f4b5647adc7ee224b9f2cc0422281955a97a6326
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:b59ca0bc0061a099bc839c26ad7d1763e88549d4cac28315526787124646b65c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:696511ce4b3295237d31b65fe9e13a7d54b3165d7ce16a50efda98d9c1cd279d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:9e17c791f2413e5b87a5ede101bd8f856c0279c1526bf4ba7510f3cb7d0702dc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:8046225c887a046a8a38c00a00ae80e84c5b8e0b7fec04a749275b0be2a4216d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:c7647f8dda93efba388a4b1f4cca64d97d802d5e2c21b575477177e1cb93e654
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:d5601ddf9585cceb527b11b00e98faab02b0d6e2847408c685c9cd72c9f81d94
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:89cbeb32c4222d65920ab098bf0e5ba11a2d65710a2b6ba4c3e49aa6fff64f22
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:86c0c21e5c712e45f7eac1b712f422c033739c3041e67d3d970a5d16163e7ae3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:d6ef9daf14fea52dcee9741c63fd352f0ad3ae5744fef408da9489fc0991dbae
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:be40872cec1ecd6c75163b25791ccdf5e39fec723e0710a3f392bbe39647e365
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:1e93fca5fdaca566e3e44279f90bd2b411959b3536795f613c3bce9e634e4b61