Sign inSign up
Harbor Job Service

dhi.io/harbor-jobservice

Harbor Job Service 2.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.15, 2.15-debian, 2.15-debian13, 2.15.2, 2.15.2-debian, 2.15.2-debian13

Index digest:

sha256:4258ec82f61461c9a0550b452add5d621a02bc00729e5a8ee34425507438b027

Manifest digest:

sha256:b5fb600fb64bbe260f6134658eaf4e3e4e5028eb777103a5d6b68cd1a4fc3013

Size

14.21 MB

Last pushed

8 days ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/harbor-jobservice:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/harbor-jobservice:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/harbor-jobservice@sha256:ace6df123713f4f17e02a4551b600e977d38862275b176a4a2bcdd1f86d2e559
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/harbor-jobservice@sha256:def6df3d1eea9fa67cf4c54011dea47127ddf4ae19808cc7a6c2500524b59040
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/harbor-jobservice@sha256:2055552b16ee351c5e3d8da999ae560b5a8afbc2473472d1ed4a26d1129fe7fe
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/harbor-jobservice@sha256:cc942e0f05916905faca2a39ca776493610ee1aa985282475ab39a1188d235da
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/harbor-jobservice@sha256:be3a63e9ab2c8f232e6c0af4db26a2e20b5165d8db4470a36501b1526bdc88da
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/harbor-jobservice@sha256:98f3b306d57811d6ce108359f07ffb747e11369bece1250ae3961ea9760798ef
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/harbor-jobservice@sha256:7525f86cee1f66556e2b3d4eafe44e72bc6df5f1185e451ed100716a0f664814
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/harbor-jobservice@sha256:172f66415cca316f0b208185f33c98885c39258cf017a2e60580958a4ad5adcc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/harbor-jobservice@sha256:f9c5665d0cb6c71e7e7e66edfa875d738d1e8f7eac68ebf926abb4304afa11d6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/harbor-jobservice@sha256:af8b08f44d9b9ec7f2cdd9f2301b7c133b574783c1dc826394a3762ac3e8a106
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/harbor-jobservice@sha256:5f1cc06db461a1080b7da92ad239f72e20eda1b9477f86134c8efa10e439fde0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/harbor-jobservice@sha256:398c7d1b767714df202a3a460629ae25bfea3722f6df1a615b651a46836c4656
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/harbor-jobservice@sha256:90912850c9f4c28305e2d03393c97025eacf6e5c0f16e2cf2a641ce53dab05e9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/harbor-jobservice@sha256:f07499cd446567e967ab3f9c807eff0d793ed74cfd95ea2dcb78e727854ecfb9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/harbor-jobservice@sha256:c9eb38db93383966e5c8538b325de8b3d99e90a373c2024854ebd9ca9d940e14