Sign inSign up
Actions Runner Controller

dhi.io/gha-runner-scale-set-controller

Actions Runner Controller 0.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.14-debian-dev, 0.14-debian13-dev, 0.14-dev, 0.14.2-debian-dev, 0.14.2-debian13-dev, 0.14.2-dev

Index digest:

sha256:be3af7f7e2b6da53604f814527782c027446c83ac65ec7a1a36f5ca1a07e57ab

Manifest digest:

sha256:af5a59a35286878de5f21f6748bcc9bfdd8ad7a038fcbd0bba6cb585546d2fd0

Size

120.56 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/gha-runner-scale-set-controller:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/gha-runner-scale-set-controller:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/gha-runner-scale-set-controller@sha256:a32ce7a5b9a9ed2485bfd5a9b956275cedd5757aa0052394d3ca18944687032c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/gha-runner-scale-set-controller@sha256:2b84b7c4fa15388d0a263bd82ff1fb8ab7ec78568a1502cac3a336748341574c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/gha-runner-scale-set-controller@sha256:76790e22495589d6a3bf263877f19f687cfd5469ed5b113b92018b37ad85a2cb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/gha-runner-scale-set-controller@sha256:b4c667120ff4c57adfd5ebffe78a6debc508a4fdae2e550a6657b436e4d5e032
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/gha-runner-scale-set-controller@sha256:5cae874519b2f6f81a84c9e1a2daeb3c1493420b1e2981c6650fb2ddff82b4d9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/gha-runner-scale-set-controller@sha256:bf7f0b083b102f8992869fe865f12285d64d75d5029d8e2355d4431c91543541
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/gha-runner-scale-set-controller@sha256:f8f3c2ec12ed956c97f095557f377eee748e3d02562985af9dd391da6fd75541
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/gha-runner-scale-set-controller@sha256:97833ead0bf4fb0d21c10662f59812402add4777ae614d3e472a4ddd5bd5f956
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/gha-runner-scale-set-controller@sha256:e745433d21063e2739fd43600ca993ca95d97ceedd55253530219a18570d7117
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/gha-runner-scale-set-controller@sha256:b251888ccbad138396bd8fecdd1afb94fb7d14b9d958942ded7aaa71d5dd4580
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/gha-runner-scale-set-controller@sha256:85e6be88232f7530c72f1db6faf5dd4def8ef1ba21aea86ee5f2a0252c77399a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/gha-runner-scale-set-controller@sha256:01869b78e4ad0af3b39049c0f7e7927e28408c956fe21d9eb2c877e5d08d728b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/gha-runner-scale-set-controller@sha256:17355d8afe4094a6f8f4b09731e673a77ae427a60314cf070ad462abe658f84f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/gha-runner-scale-set-controller@sha256:8031eb2f1acbff1976d97ba99930af5a1bac64c1726bb97c4342b23227869e24
SPDX SBOMhttps://spdx.dev/Documentdhi.io/gha-runner-scale-set-controller@sha256:d63588b3afedb0b85654624c59a58d46128c5c77cfb4d6506ed9716d23bdb9e2