Sign inSign up
Harbor Exporter

dhi.io/harbor-exporter

Harbor Exporter 2.13.x

CIS
linux/amd64
debian 13
Tags:

2.13, 2.13-debian, 2.13-debian13, 2.13.5, 2.13.5-debian, 2.13.5-debian13

Index digest:

sha256:2a9b1d525a404d1c40d7a00b192901b5a4af658699a89a2fbdba5afff386ec7b

Manifest digest:

sha256:8051454ff755eb91af3f5380218d16bac8158876117a6a2911482e2a73670fe4

Size

9.41 MB

Last pushed

4 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/harbor-exporter:2.13

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/harbor-exporter:2.13 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/harbor-exporter@sha256:9c480222cfdcae91ed220bcc3ce28702ce18b94912dfb4d231feedbd86978898
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/harbor-exporter@sha256:ecd2c9d7786325cd237426b93bdae62a1a0db71c8cd34fe55b857b1818a6d2d5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/harbor-exporter@sha256:7e9cddc9c2b740d29822bc2714cfd8804f66b80e85157697fcf5ec4d02791ecf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/harbor-exporter@sha256:56f8b6bc359054317a906d59eb29f7005ecdf82f30c8fc997ece9124ad5aaeac
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/harbor-exporter@sha256:5e89a67ff4aff0dc3b3a78adc754c0a39555437be4c619b35ed8aeab195109ab
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/harbor-exporter@sha256:06ab0b8a21f45f7f17a2f27b68f276d10c4e0f4dcf030c12d8b4fe521af7c559
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/harbor-exporter@sha256:c004f82579c59c85599797a1a76bbdd50487f4936fef994965ce07f738f06895
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/harbor-exporter@sha256:13b174a56915e0a5686977c3aea4a597aa3e4a309792f2d8503f968900d4d11b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/harbor-exporter@sha256:12353777062ee453f2ea7fe874401d5ce1f7ad8b444e3ad0ddf5e51b700055a1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/harbor-exporter@sha256:19b0d75d5f2fd4fc56b69beb7ea964cd23e108a226515bd39077b070aa9f53b5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/harbor-exporter@sha256:60875f3df9a83880efdf9745b49a23a0d448f351a71009e69aa270e520bed18f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/harbor-exporter@sha256:d641008035ab256abe7b7440c37d8292c0aaeabade5985e5d8342d493ba6c02d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/harbor-exporter@sha256:f4a428a55ff48ea2550598d82604886924643252fe0e8c5ce5aa6bdb3c53bb53
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/harbor-exporter@sha256:1dbad45ca49b37953bc827c21507a3bf604d3e2842d0494967067bf567107bdc
SPDX SBOMhttps://spdx.dev/Documentdhi.io/harbor-exporter@sha256:539a6a410696787d50411e5d221d8524ff0aae224191475e313be1d94bac3cdc