Sign inSign up
ECK Operator

dhi.io/eck-operator

ECK Operator 3.5.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.5-debian-dev, 3.5-debian13-dev, 3.5-dev, 3.5.0-debian-dev, 3.5.0-debian13-dev, 3.5.0-dev

Index digest:

sha256:a2d493e788650554ddb91c0effeb038b25e5090ee037cab5077f2cd05392a277

Manifest digest:

sha256:2867c68db865596c5462b2eb1869cddb4fd9ea8b1d8f10685cd8cab045278055

Size

60.17 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eck-operator:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eck-operator:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eck-operator@sha256:b3942e83d654b7e7714faa3368cc22f19f488cf3d00a3fa130c0fdb1f604a9d5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eck-operator@sha256:141dd38da2eb9d57fcb96c38a1ee56d03ed72e74c85400e0beb5e63cc9c41075
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eck-operator@sha256:405b6e7a6b7604052b84bef871a25a1f0e22fc412803d5d779b89a29f79c1f83
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eck-operator@sha256:718ab34bfdb6a5f9f8540a7507d6dff72e8152c4a9d1eab1a220972ae96e9a70
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eck-operator@sha256:19add4a460d4ab9a8a7906bfd3757a1a04ad221ec93844a24538e62e0a546972
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eck-operator@sha256:9828f93cdeba47a214c0570182f08f803ccc50e6893af06006b24e907f57ac6d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eck-operator@sha256:10c1fb5be2e683a7f11414369c5b4dddaff91a085139462cf60f86001c399ad5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eck-operator@sha256:7e53eb11bd11068665d26b5a55e3b2a46deda57f107cd88ac9be0d18405941ef
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eck-operator@sha256:8392501d67c3a85bb21849d13a7cd89ccf6438475b6f523f6524a9b30fe2f33a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eck-operator@sha256:bde20b5b43563955e960d9a1daa7bfbaafd74315af3b9e320d7ec795e3afeabb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eck-operator@sha256:a79c9b6e3d587a4750de64a2aa32099f5f6d5c1e62be47d65065ead2ab3ba0f0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eck-operator@sha256:206ec7b03dbe627049a2fb06c2ab6346e18c39de03b3ad7dda9f20a0a5aea0c2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eck-operator@sha256:d935563abfd10aed59831813116d7a55dc8988fbee297acdaa73c506efa0bddb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eck-operator@sha256:892a58051c1bec32cd75f07d17d879b299acaa4546a1277e2af4f66bee8ba2b4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eck-operator@sha256:c07004442a320b9a70f56d4ed993a44f8a9b78177f7396929f3449c1fb104481