Sign inSign up
Actions Runner Controller

dhi.io/gha-runner-scale-set-controller

Actions Runner Controller 0.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.14-debian-dev, 0.14-debian13-dev, 0.14-dev, 0.14.2-debian-dev, 0.14.2-debian13-dev, 0.14.2-dev

Index digest:

sha256:df07c161292ee38d7d0dc44bbaac5b36a9a619e1ff2ce25169457222eafe5ff4

Manifest digest:

sha256:5a267280fa5863ba25c43f4dd156c0cef95653bd2d288da724900b714432bf17

Size

120.56 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/gha-runner-scale-set-controller:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/gha-runner-scale-set-controller:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/gha-runner-scale-set-controller@sha256:4eb7a7aadef0231f40db2718114e2f1b2e6d05bc807f7baf847297a1b80bb8f8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/gha-runner-scale-set-controller@sha256:373d9566be1d8039c45f3602f00ff04222f62c991796b431434b1a387e74e583
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/gha-runner-scale-set-controller@sha256:733120ec3e756cfbdec83aeb1773c7412848b2242c1af22f25bf65c820a67ea3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/gha-runner-scale-set-controller@sha256:d55b2618f95b4732566c2ef2fa9de1aa9bc7b823d472c5d736d648aa4f6a2a91
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/gha-runner-scale-set-controller@sha256:6b973f5f83dbc434a5d1b23d6614fbd8bbea703219b117e457a69b9eade4f1a0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/gha-runner-scale-set-controller@sha256:9de9d934876d2e43f996ba8ee0bc88834e48165d97dc27ccefe63618e84f58fd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/gha-runner-scale-set-controller@sha256:09ec7cab167c67696f540937271acd5a7e6a1719f29ea7b4aa235a45882ab204
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/gha-runner-scale-set-controller@sha256:0c37f7ce0f738305cbb0b28dc8ea66481d69323701a07a9711978110138fb9ca
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/gha-runner-scale-set-controller@sha256:ffd93415bd5f04f40bd0d0e92966e5c5fe7f6df2021acb62854d7a78b3ce8b45
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/gha-runner-scale-set-controller@sha256:657e2dbcb07aaf62f7acc820ce4d3a73d6ba46c5f0a1940024d9cfdacfad334b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/gha-runner-scale-set-controller@sha256:7f3b146dc8723038d53a354c9dc97b1e140e159efa3c95f25117648beed55fe5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/gha-runner-scale-set-controller@sha256:b6dc11dc345904c7e40bf7487c4d1098bd66ce0a0c1878dac4d97e4afc69662d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/gha-runner-scale-set-controller@sha256:e85c322af128e1fbfb2980c49636558faa7b0b2206d4023370da6aa31799ac36
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/gha-runner-scale-set-controller@sha256:34f2b57bba2c39217dfad8512a65d3dcb963c4d3fd70ad957047f00f1b2f27fe
SPDX SBOMhttps://spdx.dev/Documentdhi.io/gha-runner-scale-set-controller@sha256:772cd52c4cad8ceadb08e18990b76cb27b783eaa5e7ff2639e5fe5eaab8d88ba