dhi.io/harbor-exporter
2.13, 2.13-debian, 2.13-debian13, 2.13.5, 2.13.5-debian, 2.13.5-debian13
sha256:2a9b1d525a404d1c40d7a00b192901b5a4af658699a89a2fbdba5afff386ec7b
Manifest digest:sha256:8051454ff755eb91af3f5380218d16bac8158876117a6a2911482e2a73670fe4
Size
9.41 MB
Last pushed
4 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/harbor-exporter:2.132. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/harbor-exporter:2.13 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/harbor-exporter@sha256:9c480222cfdcae91ed220bcc3ce28702ce18b94912dfb4d231feedbd86978898 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/harbor-exporter@sha256:ecd2c9d7786325cd237426b93bdae62a1a0db71c8cd34fe55b857b1818a6d2d5 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/harbor-exporter@sha256:7e9cddc9c2b740d29822bc2714cfd8804f66b80e85157697fcf5ec4d02791ecf |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/harbor-exporter@sha256:56f8b6bc359054317a906d59eb29f7005ecdf82f30c8fc997ece9124ad5aaeac |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/harbor-exporter@sha256:5e89a67ff4aff0dc3b3a78adc754c0a39555437be4c619b35ed8aeab195109ab |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/harbor-exporter@sha256:06ab0b8a21f45f7f17a2f27b68f276d10c4e0f4dcf030c12d8b4fe521af7c559 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/harbor-exporter@sha256:c004f82579c59c85599797a1a76bbdd50487f4936fef994965ce07f738f06895 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/harbor-exporter@sha256:13b174a56915e0a5686977c3aea4a597aa3e4a309792f2d8503f968900d4d11b |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/harbor-exporter@sha256:12353777062ee453f2ea7fe874401d5ce1f7ad8b444e3ad0ddf5e51b700055a1 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/harbor-exporter@sha256:19b0d75d5f2fd4fc56b69beb7ea964cd23e108a226515bd39077b070aa9f53b5 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/harbor-exporter@sha256:60875f3df9a83880efdf9745b49a23a0d448f351a71009e69aa270e520bed18f |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/harbor-exporter@sha256:d641008035ab256abe7b7440c37d8292c0aaeabade5985e5d8342d493ba6c02d |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/harbor-exporter@sha256:f4a428a55ff48ea2550598d82604886924643252fe0e8c5ce5aa6bdb3c53bb53 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/harbor-exporter@sha256:1dbad45ca49b37953bc827c21507a3bf604d3e2842d0494967067bf567107bdc |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/harbor-exporter@sha256:539a6a410696787d50411e5d221d8524ff0aae224191475e313be1d94bac3cdc |