Sign inSign up
Forklift Operator

dhi.io/forklift-operator

Forklift Operator 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.12-debian-dev, 2.12-debian13-dev, 2.12-dev, 2.12.8-debian-dev, 2.12.8-debian13-dev, 2.12.8-dev

Index digest:

sha256:1b3022c9ebdbbb0983426178dbb648ac82634edc90526bc15b58788d5af82b03

Manifest digest:

sha256:80b7d9b2f8fe359c14a693ce89537bda2371a0dde562f31785738f573bc5889f

Size

70.25 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/forklift-operator:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/forklift-operator:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/forklift-operator@sha256:7cb0fc8f8285cd0643a1532669cb0b8cb5abb8a46cf8602abd99808ac2b01786
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/forklift-operator@sha256:0d2f4e41ac9fb2a56229b1656c2b927f21ef810e66bea1e4d7b7bd44b754693d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/forklift-operator@sha256:1bcbe8449e6537977b88c9a46fb9477ab9245eeea355236b4c8943b8d76d7507
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/forklift-operator@sha256:fcc55ff7c991cae7c96a5cd059b11ae28ea7758efc445c0069f58a3a3ef9f5f0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/forklift-operator@sha256:25df5f62d9de936c373082d5b1697fdd6326318dcaf238059259bf82ca52249c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/forklift-operator@sha256:70467876220adbbc4836d42168fc1002f7e090a2d98edc65cdc59ca8bd050f47
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/forklift-operator@sha256:f17b64cc818bb7c044556bf02a45645f51521fd0377fcdc81a059d235f204891
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/forklift-operator@sha256:3d713f652617ffa865d96d533889e88fc9add27c0d61ce37cb7fed4801f31696
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/forklift-operator@sha256:775ad18abf6754be2f5dbec8ebf7d64100fb08ae03e514ec0bb58a9d840e6a88
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/forklift-operator@sha256:9f225c385d0d711d6380e8540131366ac7c6562d2a2c01d19339e84749a06674
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/forklift-operator@sha256:f661dbc5531d7ba215d67efc82ab04a8a71666b29c7d6d30d7d73a2920b463f6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/forklift-operator@sha256:7e74ffeba49566de0aae8d7d2b76c6d30323134adbd23103f36f795b7300ae79
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/forklift-operator@sha256:ce8410192def80390a0d8e9f0334f6ed527bc60356c0c04c3e86fd816e5dca78
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/forklift-operator@sha256:51bf3017ca37fc795adbb15d8db17a597ed128531b8515a459a8b97f7c145100
SPDX SBOMhttps://spdx.dev/Documentdhi.io/forklift-operator@sha256:9d556818ec43e1f5e1dab42fc726920269310c71421f8db56b240aef358ef447