Sign inSign up
Argo CLI

dhi.io/argocli

Argo CLI 4.1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips-dev, 4-debian13-fips-dev, 4-fips-dev, 4.1-debian-fips-dev, 4.1-debian13-fips-dev, 4.1-fips-dev, 4.1.4-debian-fips-dev, 4.1.4-debian13-fips-dev, 4.1.4-fips-dev

Index digest:

sha256:d2815ba4c68510a55e482dd91a4f438b9e396645990736b4d9aa45c38f5379f4

Manifest digest:

sha256:a214d9808e3e0a87a816788dc370d09fa811147d7521d43d96873a5037ad4cb7

Size

89.25 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argocli:4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argocli:4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argocli@sha256:bec219357659ee20321a6cf86fe693ba4d74a2f809fb0a249bd58dc98b2e8371
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argocli@sha256:296bba94b6081505d35890416293f2a7b81fe19b59dfad3a8070a8828505d951
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/argocli@sha256:41b95214d06273daac28c479ff2507f292538cc1a06c7d6add0a1debee7bfd2a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argocli@sha256:6b0d4286a70daf3b0a958a461f190ac4d230a360c40f91be4ee74f3d5e26d471
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/argocli@sha256:c111da77e2722e7e3a9d1152ac2bf96e3a3be09a565dbb04c7db056d6a3f533b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argocli@sha256:122e0ebff44c62e124eab8937d9cb140a74fc8250d9182050ebff9752b752eb2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argocli@sha256:41c2de23f1296ca1acf3e1552451da3f7e3d5bb0b3f7dd51a8dee60a39581b12
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argocli@sha256:52d760d798b80fb91673a3f417831b990e99610c5ab1d3226435002ca555bfd5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argocli@sha256:a5b8f2c393a46796d5d067355663586af69de5dd7c2780d527e5653022a19fe6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argocli@sha256:67a3c33bb9d841100b1dfec0f8810fba75c7998fa61ba5170befa9584fffa7a1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argocli@sha256:2225de3e3eacc44e051ff2d6390744e8422d29af66ef7805b815f3746097123a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argocli@sha256:5d5fced1684766ecfb71443ced0f8de5dfc24e7964f14c17b0fab94ad7eec7f6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argocli@sha256:f490fef2241cb172d4f1be1566f9941c6f5b2e3a5182ba55c8f28e6d96138719
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argocli@sha256:f8de3d80619fe613d535e6b4d321f6feeb1f3b0260f6cd38921929e3f8d31b87
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argocli@sha256:9e82509f392802d27fad173e9472f77731cb41ee0dc1d0f2588d8a48113f59f3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argocli@sha256:6e257499b061d5c27bae38b15b9de4fb49a413997ebce172c235b8bea4189a47
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argocli@sha256:a21bb79f9279c0be9e6b6c90c5eba3c5949fc1e655cea61c0171b9eb73b27a77