Sign inSign up
Harbor Job Service

dhi.io/harbor-jobservice

Harbor Job Service 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.14-debian-dev, 2.14-debian13-dev, 2.14-dev, 2.14.4-debian-dev, 2.14.4-debian13-dev, 2.14.4-dev

Index digest:

sha256:11afdc302981c81a562e97b27f4ccb90ec905869a0fb608fe5e379d8a8e3a298

Manifest digest:

sha256:d4b942d78d7d6ec89cc6da61ff182c52c588f36ae3bc0decd363ab7e2f5bd928

Size

46.68 MB

Last pushed

19 hours ago

Vulnerabilities

0
1
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/harbor-jobservice:2.14-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/harbor-jobservice:2.14-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/harbor-jobservice@sha256:af4fecf6b5d1e62899f74ad68537c156de1d140824f3b2c7cfb87b087fe61b7b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/harbor-jobservice@sha256:6125834829b3993d16aeac907e3635c145469b19336acc1b945ff4de9b31587e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/harbor-jobservice@sha256:8d8810617c09d5f7a343d7c765ae2e895d62ec7d0b6ad1e1154fbd8f994f3e66
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/harbor-jobservice@sha256:42b56ba68f91d4d5e76b94dfa5c43e05e93834d61aa173ad40c4e222c2733941
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/harbor-jobservice@sha256:03e4ecbca80a02fc6cc9f3205cfe53464d993a733a17b7e34244ba2a2147bc38
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/harbor-jobservice@sha256:7b8db3f34d8273577e83c1f3f62e6f8f96a4b67cc335d353107969395b36655c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/harbor-jobservice@sha256:8c6f8198d8f78d80da4795ee7389586ea08ca568e7462e99dbc1c0ddb519ee9c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/harbor-jobservice@sha256:dc305e8a3de28c303c563249a733a14e0f7339b892d3de727e41b0c68aeb5f9c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/harbor-jobservice@sha256:f0a9f47cadd71969c275b97f40e4e3943cf525ec132210f340c892d6f5b8ab93
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/harbor-jobservice@sha256:6ebc15e0389da9f3b07796c3915505e5fe5eb4b94052d19e4b9c43abf40edb0c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/harbor-jobservice@sha256:6095c5058720a9ac46a3ad15abe3e560a5669ac5c18a2b42efef4a73ccd2e9f2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/harbor-jobservice@sha256:b4a6106f986a0f42d176228e90a80b3461a55351a70afffe834b0a3768b6b8fe
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/harbor-jobservice@sha256:338db72e98e6a82f35cbfda1bdd706b3a894b23e4988390131e003d50969e149
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/harbor-jobservice@sha256:087ecf53f2a6454130b5d4c0c0ecda95802efc6f2bfd334e2915e26b73ddcbdb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/harbor-jobservice@sha256:f8ee4a7141d7d36553b9d4731a2496293e9fe0cf5f8078405bc07b43939fcc92