dhi.io/forklift-operator
2, 2-debian, 2-debian13, 2.12, 2.12-debian, 2.12-debian13, 2.12.9, 2.12.9-debian, 2.12.9-debian13
sha256:ed0beeb685180863ea5c60eefe4bb062fc1abbdf6764ac786b2ddea300ed5052
Manifest digest:sha256:8bcf6196bf060fd33207bfd92d61671d0577eee19f09f4ac55c88869d0f1a83c
Size
43.87 MB
Last pushed
6 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/forklift-operator:22. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/forklift-operator:2 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/forklift-operator@sha256:7b6f11f7a8ed3e926e92308f762c842b56f978b2844ab17fe26d69f751cd2054 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/forklift-operator@sha256:e9fb3cbf4f18c384c1f3d7a0f8d8bbb03578eb136058237b924f968c5e322847 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/forklift-operator@sha256:e348a8d69737d4f01fca9e34cba1efff3dfd15d8e5c4cdb64f94cc792c98c29c |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/forklift-operator@sha256:7f80ac18dabb4d80b3e68c04760ae2e3ec21a6d0534a1ea4b39905f1cede142a |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/forklift-operator@sha256:6f4db34033f711963bce9ef2868ba9f58912fa304ed6fefee85e0fc955fc5dd3 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/forklift-operator@sha256:d40051f655c88ef2165cd5bc2709e390f919aeddedabb8a2f84bbf9021ec4d29 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/forklift-operator@sha256:f0436f01dc0f8bba0f9394fde91299ac865e8eecb28bc87ddb8b4401db70b744 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/forklift-operator@sha256:61e2c1ec2f71ff80e521c88ccfd03a36cf5dc493f296d6a814a2a06032a2ff10 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/forklift-operator@sha256:9f2f932d6e3e88e8bf447012c9cd842d6d50db6662f4ea020a4b45d41b721ba7 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/forklift-operator@sha256:1db13d413aa772c05d1858338965656eb2a273c93516d3dfe4a72b7b6bb75760 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/forklift-operator@sha256:e46b4b87bced84cba88aff14525c3a1ef3ea0487c4577490f3b673c7f00296fc |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/forklift-operator@sha256:a0a12315e5b93f7e2ebe40c874a8dc087aec7023b460ae7fbdf7d9a853230b53 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/forklift-operator@sha256:8bc29dcfe995119a93e48d8a3757c40bcf8035f169b82efdef41e8845fbfdf81 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/forklift-operator@sha256:0d573f54e25eaea2072116b09abac1e6875010ea730e94719abdbd06986492e8 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/forklift-operator@sha256:c3d0b048b399bf23a2a0b708b4e8a56f7db8f30df3c1ead69ee7e92c1581ea99 |