Sign inSign up
Harbor Registry Control

dhi.io/harbor-registryctl

Harbor Registry Control 2.12.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.12-debian-dev, 2.12-debian13-dev, 2.12-dev, 2.12.4-debian-dev, 2.12.4-debian13-dev, 2.12.4-dev

Index digest:

sha256:43c47dd8b43bb173fd8cfca258b33488cbe2115d53db5e9066a930a7b319dbcc

Manifest digest:

sha256:fa9c097bb6e8b53ed8979d1e307b23f136a833d65cb8c04ed6335c6a89b0fefa

Size

38.25 MB

Last pushed

17 hours ago

Vulnerabilities

0
1
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/harbor-registryctl:2.12-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/harbor-registryctl:2.12-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/harbor-registryctl@sha256:a13303b6d52f256277ef5e81ecb3aae8123b7c0c26983ed1beefc34d944fb992
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/harbor-registryctl@sha256:81f64945ee4155a7ce20775ef85ef674998861fc7d162bdd4ccfae7adac2c26f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/harbor-registryctl@sha256:d4701fa0eae1dc900d1be902c1faf2ccd86aa7d73fc9dc6040bae3c4a899cdca
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/harbor-registryctl@sha256:befed798cb33a635d964b91eb469d79b1d20257290440bf0e6de6b6564df9d1c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/harbor-registryctl@sha256:80cf6feb4d9db4b53f7c12fdc086b03581294c88a96244fad0c20124b4ed213e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/harbor-registryctl@sha256:1b93820d454f2d4c1334f7ee1f0f7aad7c039f801102f561d79b09f81c13629b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/harbor-registryctl@sha256:b70ee9e8ec25f0c4e6370558b45af677a270e670d3c518416d212c3e1d05c9bf
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/harbor-registryctl@sha256:19535d88fb510fd31b2c58ec371694d1d195c29fa36f68727774aac77ae5721a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/harbor-registryctl@sha256:220f2c14906cbef9acb13b80fe9f661edbfbadcfc504ef006eca8e764bb2edbd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/harbor-registryctl@sha256:1dc80547239959a279f936c76adcd50211da7c74c9a169f44497a58938f5cde1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/harbor-registryctl@sha256:141ceac167155c784f80a3f2fa34b14906381b286745aeed9be39dce3a6b63bf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/harbor-registryctl@sha256:4173c96389085c95f140b6ddd6b1a7354c594e5d6dba88f247d2265497e883ed
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/harbor-registryctl@sha256:35f3f689d45c16d4f2d99e486cb6bef591cc39ebf45f736387f1116ce53d6591
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/harbor-registryctl@sha256:133c9b4920faa3a52f7c6c218a619797b555199d47606d7e7a87cd66ebd512a0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/harbor-registryctl@sha256:7c51ffbf176c8d5bf75723db50fe8005a4743c3063d0bd6ef173f53eb9b1250e