Sign inSign up
Forklift Operator Index

dhi.io/forklift-operator-index

Forklift Operator Index 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.12-debian-dev, 2.12-debian13-dev, 2.12-dev, 2.12.9-debian-dev, 2.12.9-debian13-dev, 2.12.9-dev

Index digest:

sha256:4c543a3b4d3d0443bea605801034c1e39cacd0a686ba1eae10e236040a0b737d

Manifest digest:

sha256:f17ca9baf6e7ca10f253e40678f6ada1ff82ac61e975c3c01937a4092fbcc90e

Size

70.24 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
1
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/forklift-operator-index:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/forklift-operator-index:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/forklift-operator-index@sha256:8ed21077245b80507d3dcfc3611ee163c0d4f9306d74b11a07fba48df9dfb983
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/forklift-operator-index@sha256:0c75f4321401abfcc983da1c3a50a75d19415311a4807b9a4de7344c0f90d5a4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/forklift-operator-index@sha256:a5307244c9793ead099f5249c0d340c119a2262d8ba687072215b3b4ff5c4519
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/forklift-operator-index@sha256:5afbae4260fd084be4cd334d3b134dbfef1dfb83eacd07931a27a994f9fca17b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/forklift-operator-index@sha256:237206e589ba2c1ba4910684c03d5d422b1c20298f733158dfd5b3a6a057798e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/forklift-operator-index@sha256:acb5863e5b7bed966270e2459ada2baa1f26a433819f44e38229c55762fdef6c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/forklift-operator-index@sha256:c67e04be58db40fe26ccd88b96bbd91ad543bf912531ad1bfc3d25696fd703da
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/forklift-operator-index@sha256:aa95508d6bc6fa7a13bc9c736bf6c488d3b150525939ae734b4b83a1f674d018
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/forklift-operator-index@sha256:98ac1a035ade965b14bc0e3234f15c14d51d95f729703d4c0a824ee7ba876585
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/forklift-operator-index@sha256:0eab09996a8379eea48d4ccabc7490caa335d6b820cb835cfa5bec4f989882f7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/forklift-operator-index@sha256:5d9f83cc1ee60f13aff48e5f1437145e4d0d1fa901bf406d9a558740aae02454
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/forklift-operator-index@sha256:426b35583b688b944a34a2f001cdfd1733eeb5797c3174cc4b1d8eed2e6d7ae9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/forklift-operator-index@sha256:6f7767b1b3c49704f30b64d1488dfffaf8ec83475562f2d70da1588742ad534b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/forklift-operator-index@sha256:3609257346e09e615557c48f6965dbd41ea3c24c2ea29a65467e1e481a1bb001
SPDX SBOMhttps://spdx.dev/Documentdhi.io/forklift-operator-index@sha256:ffa38ab4e7485507f13d8a1a89b4ccff05817b999f4044f15d48f14e91aa3c8c