Sign inSign up
Argo executor

dhi.io/argoexec

Argo executor 3.7.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips, 3-debian13-fips, 3-fips, 3.7-debian-fips, 3.7-debian13-fips, 3.7-fips, 3.7.18-debian-fips, 3.7.18-debian13-fips, 3.7.18-fips

Index digest:

sha256:e16e551240e39c703825836993762a2a76d25c9eac13cbc16625f4f3e84fe928

Manifest digest:

sha256:3aad5669bcda2d358690532b5d599080dde6ee2a1d9be938123a6a27dd4affdb

Size

68.28 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argoexec:3-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argoexec:3-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argoexec@sha256:51c924dcb162a70c3db8bbc722589ebf22fad1b025ee71c70caf2d71dd867ae7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argoexec@sha256:870f9126eb3f3840d98c10646299d3c792b2f1599723d98054ff2ec688f7f571
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/argoexec@sha256:bee05456b25de716395252592ea05127c4dd20f078df6eba5112b8ff4b5648cb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argoexec@sha256:5e381fe78aa5858c5042d981d6e2f4d481c30d62185cb50f7bbfffb200cbdf86
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/argoexec@sha256:9e5e1fc5bf5a15a7f7d42acb95e295d4b4f4d702a7248a4e33b625c9f32abdeb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argoexec@sha256:b58fc59957c1bc7083cd9470344424dc3f6b78f7a0ba277bad84eaebf666daab
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argoexec@sha256:b4c7e691ead69d0b39b1e15249e55c457e129b18a0de7ccc3a98b55a961ba0c7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argoexec@sha256:842d7eeb37d2dda4d7a3f5f1bfa0468e880224830b7357fc6b6f57cc1aa885f4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argoexec@sha256:97658e16ed164e90229c24a5c20d96b2c2d84ef92cb2d4db26bdf970f24ac64d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argoexec@sha256:8cc9c2c7d1a5346cead425f29be8f35a6510a6d7a8e33d0a016a179c47b9e516
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argoexec@sha256:fcdb30c1d20a79cf64548c16f934ddeeeeb390ed73a475e9d304657b36bd6f1c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argoexec@sha256:d313ba6d92edda2a9e06b10b307be5bca4ea70947981193c57e126a80a67fb60
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argoexec@sha256:93dab0c0422d367edc85a14aecf84bb05af3ea8188b5d9db5c819c4457e92719
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argoexec@sha256:9ab1a7dc2adc9333a0415624a93d937b543e34a09adb852f8db062ed431fd9bc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argoexec@sha256:2028f5720010eb833fc6d13f85252011c497149ec31345f4439f20f452c67229
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argoexec@sha256:c38c9dc9297d4ab05ecf113f07ad89ea44cf25c9c4c1f827ca17507b037f9a7a