dhi.io/argocd-image-updater
1-debian-fips, 1-debian13-fips, 1-fips, 1.3-debian-fips, 1.3-debian13-fips, 1.3-fips, 1.3.0-debian-fips, 1.3.0-debian13-fips, 1.3.0-fips
sha256:0d7c4ceeae0bc9a47b4d3d6dcc0db7894388b91155a820686dee19f093de5199
Manifest digest:sha256:bc476cd07f91a9e3704bdaab2aeedafab2cfc13b4182eb31c071d3fd430b01c1
Size
122.13 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/argocd-image-updater:1-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/argocd-image-updater:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/argocd-image-updater@sha256:78194af0d0f04a564b4df9bd05fbb920168d6bbeeb2da424c8dc899a4dfb5c9d |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/argocd-image-updater@sha256:27470e56895f8b575db3a75be0e937af674e207d8a9b652e1b3706bcbff44321 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/argocd-image-updater@sha256:60d1a8abbab3fe23f6a59e90dde35da6f60c0e80dfbc38029e94b4609925cd31 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/argocd-image-updater@sha256:95819cd9e0a30583534d8036b8a9cc31a92d93e7e2dc98f35e763ed3d211c0e2 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/argocd-image-updater@sha256:4c8a3b1e808ecb7ec799d6dd232d99886d1e04c8e941af8cea406a7009348fbd |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/argocd-image-updater@sha256:5c7f52c7e59b64b2f758a3c72440f78d46b202f23e93f6a664743080b1b8e5f5 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/argocd-image-updater@sha256:fc7430ac332250d4058c79396a5619c7328a381664cbb7398fc9799a1cd45bd4 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/argocd-image-updater@sha256:c99a8dd1b159172f31af34f498a38f44779b7cbdefbbf9cfd33d706c38612486 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/argocd-image-updater@sha256:fde4c8c91b6f9b763f95f956c282f967850d14c8c3cca0beff147568f0d26b69 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/argocd-image-updater@sha256:9122f787e5d0ee5abfc3954d61443055b63ca4b2f4fd6ce6505278c9938ef8e9 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/argocd-image-updater@sha256:77f70a9b11ac24fd3b78a07ef013d53cac00b6b08bcda90ad74d021a5ae3dd0c |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/argocd-image-updater@sha256:d0d7dadd8158274e376dd10decd35671d9e85bb2ba5a42808a0698799521f842 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/argocd-image-updater@sha256:7d5ad7e41c1e25f07ba239db5da57448b077b8bf7c12ebc4c9c0d9bfa7e10a03 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/argocd-image-updater@sha256:99e76fb1c695cc487f6432bedcd7f96be476b4e75277251061ee06d95d8a1d42 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/argocd-image-updater@sha256:5c258fbc0379230e4a4c8124737afbbb2fc01e65a6cc85b3681ad3210c62cbf3 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/argocd-image-updater@sha256:c9467451085d35889d041ba14d9adf93da1921ee93df22022286749b512eeb05 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/argocd-image-updater@sha256:30bbd2515f86776256fa55bcaa0f7040cda26e1b3a47897918de2e823d3a4b92 |