Sign inSign up
Argo Events

dhi.io/argo-events

Argo Events 1.9.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.9-debian-fips-dev, 1.9-debian13-fips-dev, 1.9-fips-dev, 1.9.11-debian-fips-dev, 1.9.11-debian13-fips-dev, 1.9.11-fips-dev

Index digest:

sha256:9258129907844a63050631f6883b23f361c77caf38ef9c319e2d56cd55c45da8

Manifest digest:

sha256:c314c358722fd55b6384ee524b034b9cde49945f1afef48b06d0064ea260a344

Size

143.00 MB

Last pushed

6 hours ago

Vulnerabilities

3
9
1
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argo-events:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argo-events:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argo-events@sha256:402bc357634006f614d96df58c148737d8fb42cd4f9452bda8aab731747cd507
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argo-events@sha256:8256538331f4ad8ee7eca03b26ee22be6428905d62d875a9e17fe12deb1ae17d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/argo-events@sha256:b5aa701ffe8efde9452fe76f4d65e870ce2509cbb9afb844b09ece96d6c57613
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argo-events@sha256:b468dd9749889fe1d57c9395ac941a6ed3770e40bfe153b40a8c4197df57602e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/argo-events@sha256:a6302c63ac60f71a6dcd239f1fba66b39127918be7b0b0cee394296f94c12a79
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argo-events@sha256:ea2faa7c381390aa2960fc592e43f50775126e5bf17b9ff0bbb8eef11d6e5d4c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argo-events@sha256:4e2064d62fde669ab6e325e763208c5c923790b7fcaec231e298ee9a37110c8f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argo-events@sha256:90a91628ed525909b6447f7d267986db93cc61560354bf31720a4f29fc08d833
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argo-events@sha256:7a06c2adf4fda5a4c24cd33e08e3d04ab1c6581922146625fdbab72e67a4837b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argo-events@sha256:705f228057dd05f59841802641bc8a5bb5b644806eeaf524ca55cf90f3fbd79d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argo-events@sha256:100f85d3a14b432574fc09a295f82199d694a5b15f5d2ba291f8e44b72334f5b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argo-events@sha256:9f0c7f98274ddf62323d1a86944f27beb40441ca2cd5598c798386019cb9fb11
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argo-events@sha256:3cc8d919ff3f8bd738418027925ac1ab736add9de2644760b9e16dc492b82c7b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argo-events@sha256:11022660372a1a4fe118232b6a28df1901c4977b82c46097f0ddde2c32236eff
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argo-events@sha256:02ebafa0aee2363c33e3751ada9c840d3bc30d14db093166e2a7a90446f70537
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argo-events@sha256:85bbbfe9d9b2acf9d0506a8a33759502b26d4e5d8b1c700ae0b669290b7d74b6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argo-events@sha256:844471e50deb552119fe5f3cbe4519df7ccddb9f4ff56f91f1fcd582785f4c5d