Sign inSign up
Argo Workflow Controller

dhi.io/argo-workflow-controller

Argo Workflow Controller 3.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.7-debian-dev, 3.7-debian13-dev, 3.7-dev, 3.7.18-debian-dev, 3.7.18-debian13-dev, 3.7.18-dev

Index digest:

sha256:828b6e20e8c7eed28d499aa26dd3b747d872ea3f607ca08e5ff2fc494948eba3

Manifest digest:

sha256:71903f040bcf72fe6a5dc40aaef8bb5c788b16ddc1e4a57b6ed16b94fc2f440f

Size

63.62 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argo-workflow-controller:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argo-workflow-controller:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argo-workflow-controller@sha256:930717e97a6b1c8633ab5fb03ed078f64fb76a89bf2cc7f893454dfdf9ad79d5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argo-workflow-controller@sha256:da88f781d447071504364e5892a0b4dca679fc7825bd07f78823c1f0a67da9f4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argo-workflow-controller@sha256:96b4148421c43b9f9cd424bc8a15ccf62dae0c7e85e5d492c804a8140e1e59d7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argo-workflow-controller@sha256:773026397aa23898025122a3ff27c6e6aed15999ea5ec503dd9664da9098c540
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argo-workflow-controller@sha256:aed1afd0a8dd889a90a622dd40f1b1a592b0689b09dfcb54b374799e1a713314
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argo-workflow-controller@sha256:8faa30287d02c0d41351074656529c3bf0c27a886e7e48e4dfe542173ea8e87f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argo-workflow-controller@sha256:a812855a1907ec3fc4f5eeb17eeb531b11dada97045b9e79a1fbb96c16a73d3b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argo-workflow-controller@sha256:60bdc21fae5e84aec580903f280b1d656aaf93612de1c51f90514f35c1d03cce
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argo-workflow-controller@sha256:153973ccc9ee16eccf6ae8e01577c2970971c947a2c5ad3a0abd885a34e7e05c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argo-workflow-controller@sha256:3d1eb3835604251d70f25f72b47a0967fc19c4b2d9f3236183c6be0461c397a9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argo-workflow-controller@sha256:d07517dce75a4366a1825570b2146a558566fd2fae115144d1e6da20d3c6b951
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argo-workflow-controller@sha256:87e0a25a5a01b6661b1e9cadfe8a14f86ae3162222abcf1d23bf6ed8326a94d3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argo-workflow-controller@sha256:1cfd5b0f31ed0b738cf4268e2e06f024228e4b0732b09c6a4365fc96f2f8e998
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argo-workflow-controller@sha256:b1f692580b2c43e300a5ba554a089611f892381569c418b838bbafb06bfd635f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argo-workflow-controller@sha256:414a8b0c29c3d4835e9f92e39aeac6f75bf632116c281730f653925a2a132d9f