Sign inSign up
Argo executor

dhi.io/argoexec

Argo executor 3.7.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.7-debian-fips-dev, 3.7-debian13-fips-dev, 3.7-fips-dev, 3.7.18-debian-fips-dev, 3.7.18-debian13-fips-dev, 3.7.18-fips-dev

Index digest:

sha256:95719c9cbd2d556d999fd99ff7b53a077439128e5d296f231d6ec17123918788

Manifest digest:

sha256:e17caa7a5c7d551da6e4825d43063034b9496b341b3b4d5f46d1db425d25e740

Size

82.90 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argoexec:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argoexec:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argoexec@sha256:cb2fa0361e4a657f91422be0f3967a1c6002e1f80d1d0837025f09d593bf9fee
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argoexec@sha256:955ac90820fe8896e0974f4a1e25748f731a2ec3f14787f66a83c8672bb80b7f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/argoexec@sha256:ceb2d0fd1fb766d8b239bfd9de45c67f2d77f3cc2d73f8eb2ef19ae090e2902c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argoexec@sha256:6581e49ba6a5960aac638a4c9cda573b3bea80c81bdb224cb27ea620c0d9b3f9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/argoexec@sha256:8cf300a8f9f96d93ef334bbae7cde2b217e6898e4e5837a61acab130c88baf63
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argoexec@sha256:2cc2f0fa52cdc5bb1cf98a8a2593675c81c4512245d60df2c132c49ca969e3d4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argoexec@sha256:4504cd0d9c85558a3e0da5a23204d8b785c39fa16c97d4d82b66d015bbaf1158
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argoexec@sha256:334c3d96f6249f4d5eae3b0be7bff4f535bad30ff8104f998b484d38e6768efd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argoexec@sha256:460b0eb77b6ad2c0f2f5c15d281dfde96f60a3e45091e2aa6965b7147d3f3fca
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argoexec@sha256:12473d2cf66971d2a26715e6676ac517bd9dada7be17852068af5156b5a7ba7c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argoexec@sha256:08d2e0a7ddd8c5a3966aad287ff45e263d7509184813b94476f0aecb8c9a9689
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argoexec@sha256:f8142d2f1e04f192022e9279ae5e17870e8c34ddb476f90d0b0e198a15ab541e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argoexec@sha256:558b64e3650d2b4194eba0706c4a7e978a37578d2d372578bf2dfd244f6a4d30
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argoexec@sha256:d507cdbba351d9d9da85174bc4b3d0b4f87ea6541a854f8e6cbfd2aaf53eac34
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argoexec@sha256:f240a03bdeabd105c0cd13d72461483a0455e8943446ae737b069b2ba3ab8324
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argoexec@sha256:24d94330764c814bb49f53d6102530c98230854fdf73a939edfed5ed2fef9ee7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argoexec@sha256:9c2c865cc7f662c585fbac691889571645dabe42307f33666e2389c59b8e02a1