Sign inSign up
Argo executor

dhi.io/argoexec

Argo executor 4.1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips-dev, 4-debian13-fips-dev, 4-fips-dev, 4.1-debian-fips-dev, 4.1-debian13-fips-dev, 4.1-fips-dev, 4.1.3-debian-fips-dev, 4.1.3-debian13-fips-dev, 4.1.3-fips-dev

Index digest:

sha256:f3c1c38114dc2429643a42d8bdf91b287c8813467370d0904a74626ee3ccd110

Manifest digest:

sha256:74f416485ec3e807b82930aea8ca41d362bd44e80515a27866eca02df6f0a9da

Size

83.91 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argoexec:4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argoexec:4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argoexec@sha256:157f2f7d7f5e0528a681f27f9b9a5ce657016be762dbdd0be5c45fd81fb444ed
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argoexec@sha256:f43aa8abbba9bb167e0676af5cf37977c9ea19228fcc49d525798c5e3f24b792
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/argoexec@sha256:5ee49419e1b9aa7b6942b4a61d48f688c22e7df6098ccb8c361058984fae923c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argoexec@sha256:c5fd44483331b7810c2114faf4f80ef24cb93c0e40d66d0730217d14f7342344
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/argoexec@sha256:ae22154a95c816731e62d520ec820998668d0686dff16b21e648e49de46b9631
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argoexec@sha256:9ea95179df59288ef0799d2c70f0a913eb39b2ecb1814f690c0c9f4372259826
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argoexec@sha256:1d98622af804bbdad9c10977f8cf35dc9357f7c94b81883892c0bee5209ca308
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argoexec@sha256:0d8e65362fc92885a409fcc2ccaaf4b599f2028f832c47a37397231af9262e1c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argoexec@sha256:0930ca2a336f0c549bccddc750adf679e8d391941cef45e0f2fa981452956ded
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argoexec@sha256:beaf52788a5558f3965207972c2715f14e85a993d6d5861dc55d1670ddeafa4c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argoexec@sha256:f7edf13f3a6d9e438dbf523a6b100795e0ff5701dc39d8e59217380c2c9cc7ed
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argoexec@sha256:b491d03d7878da01b6a2f2cfcbb044e7c968ff15c0e9f9e8c5922fbc83eddc4e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argoexec@sha256:1d8c0d85e173b07554510a7f0d17e2f7a1e4dd36fc1379894847ed07ae7b9abe
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argoexec@sha256:a2d86db5b9453c4f0749536f01a9af820422c404739e4007ff00d68c3437437e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argoexec@sha256:d5a55ac3c517f8d8d066817804c66a6196b81fe6a7f3517d1f5b57f539352087
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argoexec@sha256:b6c48804659066e45233633cdedcee94be3e80d2472712a2f7882996e061b192
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argoexec@sha256:a5d5e04ae90744b7515c074b6aff336a998311e83ba4c33ede106c5590f0235f