dhi.io/argocli
4, 4-debian, 4-debian13, 4.1, 4.1-debian, 4.1-debian13, 4.1.4, 4.1.4-debian, 4.1.4-debian13
sha256:6939ab731ffa76d717ac48fb98efc1a119af1caaab9e58efacb91e03e1960b0f
Manifest digest:sha256:3c9c9834c358f1d747549a88f3b99a32e47017e8a7daa1500275139f8bbd96db
Size
74.32 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/argocli:42. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/argocli:4 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/argocli@sha256:3c2d590f4dcc709b2d383b780c44b08565748af7c9bafb2e5b1d3b7862316734 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/argocli@sha256:1e543565360cd7f57431177dc9bc1b98b5d2cd120af583e9b347f848a4f48d4a |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/argocli@sha256:6f8a983e96165676ddd722f0a5b0fe1d7da6b3c7f9a36dcb0a9a6abb391f97f9 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/argocli@sha256:b68e41a4bd8c1c9c326fa42540adedfb85fa4eef3de9e84e4c5b94e2d6cca505 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/argocli@sha256:924e852358a09ddbe3e011d6a56defb599c269ddf9044f8d03c2ef35bdb6b9ee |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/argocli@sha256:f67dfddae8a41807f8882fe668f59a48d6b8ba037826167be292ce3baf0b8e41 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/argocli@sha256:9dc28285ef24c678eb5b74dea942c66915a2a67b8ef4b082f6257682ad004e68 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/argocli@sha256:39f10c9bc9a98119eebbad4351f1ef084161847e75fe2697b7565538e0a73795 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/argocli@sha256:ef7da566590686e0facd15f2b287c8763895930149362f2b1c6652d8fb20af99 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/argocli@sha256:f5b31eeda69403418d619422ced1067160b0588491b5d52b5e3def29ebbec6c1 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/argocli@sha256:9e072259105b0bbeb421d48367353858d9d6748ff3e89da99aa39251503f266c |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/argocli@sha256:2c88afa5a011fbbdbdf5a35d8b6ba644af281611f364ae60366dd332c1f06470 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/argocli@sha256:0ce8be391bd53f0ccefa5ba2c3ab5b5a1574ca7ed5e14ce7e83f339714e39808 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/argocli@sha256:0735e1b3ec6ed03fdd3bc02ce2b6569adb0ba5ca94dc71a01173d4cf21271cf3 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/argocli@sha256:366d6e9d77ff6989c2d5511e9e89164672ea445bff4c0581c91ddaf08b6d04df |