Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.5-debian-dev, 3.5-debian13-dev, 3.5-dev, 3.5.0-debian-dev, 3.5.0-debian13-dev, 3.5.0-dev

Index digest:

sha256:a97751541879f420cc94aae3ca4d3f7083af4e67dad0cb83c9761390ab285e83

Manifest digest:

sha256:8a83b77d0238bbb257d96fb86b80c9acb3575a3452599c4152b3be3fcd5593be

Size

60.17 MB

Last pushed

9 hours ago

Vulnerabilities

0
1
2
10
1

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:713234667a1ed3b88b173aac2420b1a39538d2ce16d6bdd52ac8d72887f22029
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:a016e723d5269eb4cbf932562b6249c48592be793190c6c492a3a7f24142d2ea
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:4c8e9ef674af2fa4c94d0a2a3113f0215dba4e5de9368e313221ed89214cdc64
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:157b539a401256c5724679c75753f6a52807df646332f849485bb6990cfcd7c3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:765e8c56d120e5acb634310160d3ffd2d595d296b5e7e8f79d1ec878cedd79c6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:a66f71e707a7b73503442e6f09ced3ecceebc60cf47002f71275aca7b6b3a771
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:f80bb404870be99c3da9bc8520e907b2ccab3d55108667d1883c1ba365357f51
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:be7468fd447dc04ac28dce53968b8a12b0a1d071036155bbb25e11cf1a91ffad
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:35b464478c40b2e20b18982dbeee070a90282aeae1ee825d6c4ee7c0e8c0ef22
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:3c430486aca22db3a9716e96091d1f36e24a26f5f68305a324449863be429d27
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:79ab6b5b1eff407f63defd66b35fbead723ed045847d2c1448dda6ced1241c48
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:ca541311265aac06c87d9abbb05e250df0280527f36d64bdd784f0a275f69ddc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:439cf38e6fdfe993b4c3688eb0494d6f81ede999a090d3676f5fec0220569d65
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:0150a39f3751339af5b22f1f0b9c6440b72a8a0634a1242d9610d97490e2a3e9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:a4bb6c96737129661df8540286916ecc9ec2375a0169aedbee68f249078c1860