Sign inSign up
Argo CLI

dhi.io/argocli

Argo CLI 4.1.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-debian-fips, 4-debian13-fips, 4-fips, 4.1-debian-fips, 4.1-debian13-fips, 4.1-fips, 4.1.4-debian-fips, 4.1.4-debian13-fips, 4.1.4-fips

Index digest:

sha256:129d6ac5f03a2d606feda2d89c7d56e99b95a45a5f40eebbc4d524355d35a10c

Manifest digest:

sha256:4042eecf0854ccf593b5d117a1c40c78af3124291aa21dbb6a2ce6ad0cab39a6

Size

74.88 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argocli:4-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argocli:4-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argocli@sha256:f46cc1d39612d5572ecffd8c6213c8d6650e414d1a9ad7a5abc8cadecaf0ccd3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argocli@sha256:205f4016673335feb7073839ead719c9cc8d291e6791b4e261bc1cfd7dfcb4ab
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/argocli@sha256:8bcf01aefeb84a75b9a6543173eac67de88767ea3be02e8bb4702ec4403c4682
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argocli@sha256:d84c541ccdd20080e47028261e32afeb6348f9401d1d70ec6304ee1fe1a36704
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/argocli@sha256:ab3cb7b0181d9ac906bd3bebb82d3434af964d5ffb894fe6f91879cdf58ab632
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argocli@sha256:0605de64ead45ae441ea549bcbc4a87465b805a6571fe7df24b0671bb4151a94
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argocli@sha256:019fdc48eb0fa82d6a9d032c8e9bcf0e123e1d5b64be850a9d45b7a85fa91849
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argocli@sha256:07883aedcdcbaaa5a5b90a9a3677cdf51e369831091e400ea15c0385deeb2da5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argocli@sha256:6d7fe104931b78ce26985c5c0a700445020cdc70cabe114cabd0f1391172b478
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argocli@sha256:e7b1f625963f2cefdeef11ea4a6ca7d0bbb02928eff6fac07c4c9014136428e1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argocli@sha256:f0798ea82fdc9418633905c64662b082d092238542f43167bb885327abf26245
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argocli@sha256:969573f80b6a0c1720defa532abdf57beb335fc8e2877c7cef9e90c9959d8332
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argocli@sha256:d76ddda4983342de01b98d0fd58d70037d3d28995469ea0dbefa2687d386cb8e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argocli@sha256:cada1522e2b32a4a15b14dc9c5b25111d66e8c76b1d8b13499d057a5ad119dd6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argocli@sha256:f8653c882824f7fe1d61ce553eff1d1376970e5bf06b161e111e2f5a90150a52
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argocli@sha256:a2c4a7c32db798ff67a0564e0d88028753aa667f572d51624a0b599e53dd2e1f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argocli@sha256:45fdb78bd42d106e511b35792f53ffad28dd3bd384c85bf73155446b9241c939