Sign inSign up
Forklift Operator Index

dhi.io/forklift-operator-index

Forklift Operator Index 2.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

2-alpine-dev, 2-alpine3.24-dev, 2.12-alpine-dev, 2.12-alpine3.24-dev, 2.12.9-alpine-dev, 2.12.9-alpine3.24-dev

Index digest:

sha256:003440958f2611472d46f49cfc1f631d6c7758b01578e84d95ffc54a251770f9

Manifest digest:

sha256:41c980a3fc968d624ce5332fe4ecf6475dbef7bd715645ea3ff96ab5430717f6

Size

50.65 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/forklift-operator-index:2-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/forklift-operator-index:2-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/forklift-operator-index@sha256:4f1f6073e95663a74d787813d426e8e24b54c4333d2b978511e1d0d311f217ab
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/forklift-operator-index@sha256:1a5f0da542f688471ca824a9d7b6ad7f0394f05c921cdf52fe2bc0333ae51933
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/forklift-operator-index@sha256:3c8b7efc693e2cf82b429ac17b48ed1a5fb560bd66e4ff1cc7f8d78dae3dcbee
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/forklift-operator-index@sha256:ed9c46288408fc5a9b468042c0dda0c58c109b27f954ebb365fc80fd362ea3cd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/forklift-operator-index@sha256:eab28efbe7ca56792a42605c69e3e56135df224ad85f70ab67be07dd71c37cc1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/forklift-operator-index@sha256:c216e0df4b0ed4f7f2e484aabd1ed7d1228c9a2e693632ad9cc2b804459a5f3d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/forklift-operator-index@sha256:b820ac2de56dab2d925e76d08d0b19caf88bc6eaac23d83ea8329f73e3def2b6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/forklift-operator-index@sha256:d445726921ec0388f00f6594770d50ba2c63a3f7894b1ef62eb6141e27289169
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/forklift-operator-index@sha256:3c2384741372cc8d086eeafba6f0775fe20a752ca1c608c0734fb03dcbb8f597
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/forklift-operator-index@sha256:28aa3ef44b04a72df16a4b4c883139962244459129e2394d1fdcf806d4b103eb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/forklift-operator-index@sha256:693ca56526f71ed75153d1a704126ae18023b2bb9fd1202e94ac8c2c1c4be63f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/forklift-operator-index@sha256:ecc0b682dcc6d7477a684c09817c50d291d831c16086dfb536a66fae9412d613
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/forklift-operator-index@sha256:9843212ff7d15e659126fa4830e7fe161b65725f633b277f52044c6d7cd6b937
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/forklift-operator-index@sha256:db2681a0cd29fcbaf34eed5df71e883bdf24ef57d16f251ce783b210c31ecfae
SPDX SBOMhttps://spdx.dev/Documentdhi.io/forklift-operator-index@sha256:e1d9789b14ba0b27a6136a300e7666e9af46092e10ac504e9db4889b6bc26004