Sign inSign up
Argo CLI

dhi.io/argocli

Argo CLI 4.1.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.1, 4.1-debian, 4.1-debian13, 4.1.4, 4.1.4-debian, 4.1.4-debian13

Index digest:

sha256:6939ab731ffa76d717ac48fb98efc1a119af1caaab9e58efacb91e03e1960b0f

Manifest digest:

sha256:3c9c9834c358f1d747549a88f3b99a32e47017e8a7daa1500275139f8bbd96db

Size

74.32 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/argocli:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/argocli:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/argocli@sha256:3c2d590f4dcc709b2d383b780c44b08565748af7c9bafb2e5b1d3b7862316734
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/argocli@sha256:1e543565360cd7f57431177dc9bc1b98b5d2cd120af583e9b347f848a4f48d4a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/argocli@sha256:6f8a983e96165676ddd722f0a5b0fe1d7da6b3c7f9a36dcb0a9a6abb391f97f9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/argocli@sha256:ad0d9b55db0b71d8718b3153b9643b620e440d73be4d50ec1ce0bc58fc93df61
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/argocli@sha256:223e7cecaee4330985049bb800d796fabf46c5f19049934fd7add879266a3d2d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/argocli@sha256:f67dfddae8a41807f8882fe668f59a48d6b8ba037826167be292ce3baf0b8e41
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/argocli@sha256:9dc28285ef24c678eb5b74dea942c66915a2a67b8ef4b082f6257682ad004e68
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/argocli@sha256:39f10c9bc9a98119eebbad4351f1ef084161847e75fe2697b7565538e0a73795
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/argocli@sha256:ef7da566590686e0facd15f2b287c8763895930149362f2b1c6652d8fb20af99
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/argocli@sha256:f5b31eeda69403418d619422ced1067160b0588491b5d52b5e3def29ebbec6c1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/argocli@sha256:b6eb604cab56cee458d90d6891c0fd955e256d025c49bd1603ef8f460786da52
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/argocli@sha256:2c88afa5a011fbbdbdf5a35d8b6ba644af281611f364ae60366dd332c1f06470
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/argocli@sha256:0ce8be391bd53f0ccefa5ba2c3ab5b5a1574ca7ed5e14ce7e83f339714e39808
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/argocli@sha256:0735e1b3ec6ed03fdd3bc02ce2b6569adb0ba5ca94dc71a01173d4cf21271cf3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/argocli@sha256:366d6e9d77ff6989c2d5511e9e89164672ea445bff4c0581c91ddaf08b6d04df