Sign inSign up
Argo CD Image Updater

dhi.io/argocd-image-updater

Argo CD Image Updater 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.3-debian-dev, 1.3-debian13-dev, 1.3-dev, 1.3.0-debian-dev, 1.3.0-debian13-dev, 1.3.0-dev

Index digest:

sha256:e4f9e7a97094263e2b5e6b3f8c8586b9af6bbf8f93097faaac3e2fd0bf022b0c

Manifest digest:

sha256:2ae086c0f17645fb466b8b8c2837f12b5a7306d3095b49fa13683302bafbf7f1

Size

130.92 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
12
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argocd-image-updater:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argocd-image-updater:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argocd-image-updater@sha256:1026c222014757f8c2fa2eaf67572ae74bb42dd6c9b125810249680f2c898dfc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argocd-image-updater@sha256:2184752bd3405d70f4f1a9fe22af00a100ef49fde5d3898c139a071cd9b888be
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argocd-image-updater@sha256:f0b685d57ef68039368a78db2a4fc26899c825631372867b82db05ebb2b5b84f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argocd-image-updater@sha256:0a14442c725611d3334c2b810a3e1c5f4dca6dfec0a3eab508de5d1494ab0765
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argocd-image-updater@sha256:93220df3f441ae1d9035557baed920658c3c20261b3ec9f5a79cce4a8ae1535b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argocd-image-updater@sha256:e71b81cc737c983b7fca2a1c570ab619dddd2deb918c1ac690b32c3e74b0151d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argocd-image-updater@sha256:abab951a69c4320f7692f0236adcc8531636b0e9f5e5ccc9d1d4f2e61630d878
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argocd-image-updater@sha256:e411a8eb9c407ea176c0b4b900ac985076749528e86ac8077aa06caf5b4169f4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argocd-image-updater@sha256:0c8290a83319642a71e8356d6d5b33d083c214c8204b658d2e47dd6ae6479833
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argocd-image-updater@sha256:bb653cad3ab65374a510642539bc05aebf7b4b1eda0b87bb6b0388aa937fd32d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argocd-image-updater@sha256:8672267ef184c635ce428d279658a5a0dda23e3f4396b55e2cbdda770f3f394c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argocd-image-updater@sha256:270777ff850c92d74df3cc675f312fe902c883a742c4480f7233ded33a850d90
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argocd-image-updater@sha256:4336313c49b8bb57931052f01ef5a1995e6d2942e78e3ad22b9c1e4a63a69e17
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argocd-image-updater@sha256:a2112687630785ec41da0696953fa5161df110080e5e3a1c1fad6d56882af84c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argocd-image-updater@sha256:13006b02f598ab2973f5c144127df52a9ebcc1c867360cd67c98b4a414dc4975