Sign inSign up
Argo CD Image Updater

dhi.io/argocd-image-updater

Argo CD Image Updater 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.3-debian-dev, 1.3-debian13-dev, 1.3-dev, 1.3.0-debian-dev, 1.3.0-debian13-dev, 1.3.0-dev

Index digest:

sha256:065f501a93bc3a628a1348fdc4ccb34b4c7de7219df4fd5c519eb49443d06da2

Manifest digest:

sha256:e30c25147ead8bb65ddf288a16f53234609fabf5d57cf36b7c4daafb91ac37dd

Size

131.05 MB

Last pushed

4 hours ago

Vulnerabilities

0
1
0
12
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argocd-image-updater:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argocd-image-updater:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argocd-image-updater@sha256:20d739318f1ad07e5386b548f5917198f725d2155e6dd84b9b5a8c1f4f3a767b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argocd-image-updater@sha256:bfc2b7dc4c10640a77f8631ace92c336bcb32f9e001500daf913a9bef044de4a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argocd-image-updater@sha256:614cfef4ac01d7b9aadc22f2445258d27a45ed8805d101ce7565d783a319d388
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argocd-image-updater@sha256:70af9f61141e4bf0c9a237cb15717a37cfa60f0f0e990bebac1d78d53ef06f97
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argocd-image-updater@sha256:2edb613e3a45fb7eb77d5deb9a67fd2ceed128649e8e72128dc4631ae8d1d229
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argocd-image-updater@sha256:f11fb70e0814475ecc2061362d3147971669e7d5b5bf776c982f432e384cc899
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argocd-image-updater@sha256:2d9f74a60cf27518d2651fedf02b8df1ccdce6851c1370afd73b7429c55eff11
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argocd-image-updater@sha256:6696285939c87875a82c46c8f95225c176520a9a8aeabd5d023d080efc7b4add
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argocd-image-updater@sha256:e165d27c553ec9b7a63ef92f829a7c835bc792d7a06a8833d9d3eed3ce215e42
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argocd-image-updater@sha256:9cdd2e2f0549fb22e071df95f5ff4f9a4bb56d80d29cff0e039f60ef2aa5baaa
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argocd-image-updater@sha256:1eb7bdc02819ec1084a1a3d203c04040e00a0d688e393ec6535a457a6eea95bb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argocd-image-updater@sha256:97a8253eb1e19129dcf62d48ea8f644daf11ea000fd8664e2d1a30899cc55e1c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argocd-image-updater@sha256:e573fabeb8003d535af2171c53dd21da9b5009c8beab0f58eea0839479f3133e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argocd-image-updater@sha256:25bdbc935df9dc37f4c1f6ae7e1405d5c5e9cee1e86943e304efb243ee78ff73
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argocd-image-updater@sha256:8ca00cd3bc041ad762009e0bd7ab42779b5862a55481279b6e3c3c1b7bc5b317