Sign inSign up
Forklift Operator Index

dhi.io/forklift-operator-index

Forklift Operator Index 2.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

2-alpine-dev, 2-alpine3.24-dev, 2.12-alpine-dev, 2.12-alpine3.24-dev, 2.12.9-alpine-dev, 2.12.9-alpine3.24-dev

Index digest:

sha256:385e2104aca5399702158e4f7d6c825f79352e8589d3090d2d6239933fd18d1f

Manifest digest:

sha256:42460b2b0de73b8d0bf86dc1f3d1a92a4e4b1019c2d340c2ec3db0db0103216a

Size

51.02 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/forklift-operator-index:2-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/forklift-operator-index:2-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/forklift-operator-index@sha256:ef6992a5ba071f0825982d349a0f98f5191d49a6efc0a5bbc389f464addaeff4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/forklift-operator-index@sha256:a0c82001ce2c04ef73a2224ad510696f5ed85b7a2e5ac3eb531c251024694214
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/forklift-operator-index@sha256:d33f5fe25f977286c2ca1479bd844f174517dc8322b5c51c8f0cd4d0b5e46f4c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/forklift-operator-index@sha256:14094b36578997f5d3a53f5dbe1ca1996ad3dde6f75ea09e16409a7496444a4a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/forklift-operator-index@sha256:871162fdde5743ee2dd50daf0cc042b7aeb3ee6fd713a20e5b2f95f47daf65cd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/forklift-operator-index@sha256:b6655e0bba9e80592b4460bd12deae13e456252a0eb2377b39e53cdfe8f777b7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/forklift-operator-index@sha256:f397235224ed5d6d80d47876327f1af10fdce5cc2d9922a1f58c44df011fc75f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/forklift-operator-index@sha256:637355f6f3dc0af7850b46355a900065685c93c3f9baeaa8ac007168e48e298d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/forklift-operator-index@sha256:9b710989cb51ab625c38d528268c81779e7c0020f6be901d79b83da57b68348a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/forklift-operator-index@sha256:c2bd8b38c90a1c20e754da90a65a400e716e13a350f2672975178f69e656f2e1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/forklift-operator-index@sha256:4ce630b0aa5bd178fa80137b86e0bf94901570994f6fed7f49c32a57956599b2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/forklift-operator-index@sha256:4da22d25958dd727c536f651bbb6f2289cf8d070f9e73515ef29f0a9039ed77e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/forklift-operator-index@sha256:63b372e9b48a2fb1bb1b4e4901a7100b7057349f62694b37e7e18172ed848cbf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/forklift-operator-index@sha256:a68c4e19025d96236e74a7ae3097808b7e4eca141381720b802c03cee5c357f1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/forklift-operator-index@sha256:1b5e22d2cf2d9a02eea3ff7a73d8f763c87938bcae5b6e9a2288af94747f2ec1