Sign inSign up
Harbor Job Service

dhi.io/harbor-jobservice

Harbor Job Service 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.13-debian-dev, 2.13-debian13-dev, 2.13-dev, 2.13.5-debian-dev, 2.13.5-debian13-dev, 2.13.5-dev

Index digest:

sha256:e724f77659ed72b51ffde0111e3f3ca7939b2b108e105d15901899b47c30d34e

Manifest digest:

sha256:6e5a48f99aebc3d408e96d0335b1709edcf9dffbb04dae745ae396f0d8b27cfa

Size

46.57 MB

Last pushed

1 hour ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/harbor-jobservice:2.13-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/harbor-jobservice:2.13-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/harbor-jobservice@sha256:0ec3d5cf0dc83699f236a9ffa746bdb27fd631c623f6f0a416919e4b49acc6e9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/harbor-jobservice@sha256:b17a6d07f4449eac763bf4781a050b5f7b17dd03fd3958d9e1daa901ef5d2977
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/harbor-jobservice@sha256:397a0961f18307b2b42e4ba891aa0a9355e6433aa0910b49cd4e29e4dfbb3a43
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/harbor-jobservice@sha256:5764f180ce882f63450ac179b2c480b0b7a43cf378067d7d35a98023563e618c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/harbor-jobservice@sha256:05068923eb860e2d231225cb1a55e4d0d074bb8c44cd3e97719eef8be6370361
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/harbor-jobservice@sha256:9f4483c7e5d09c9c68b6337efb5a60bfc882313c6dbbdd7ec8b1986877ba3682
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/harbor-jobservice@sha256:b7d1f2c101b9524fb23addec7af0cf513043747ac2a1b77e964a15d4be9023c5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/harbor-jobservice@sha256:0b94800dbee86dc4d02ba9ea38fff21d65d336ed49b9e29035ea0f8bcf2a301e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/harbor-jobservice@sha256:7d548d4c117d87e37029898c04fc9ca62fa58410f027f1c2fd852b7471a9fe31
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/harbor-jobservice@sha256:212e2f4892287aa5083379731808b9dd8615c0fd383ba29a7512237d611ac6f3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/harbor-jobservice@sha256:685e456fbd6f955b021f8ec6b757b36474fb39908e7da2723db167e583c920c4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/harbor-jobservice@sha256:71cc2cd942bb869007d472ffc5a7fbcda7eb57e2949ebd05a77240ed879e8b82
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/harbor-jobservice@sha256:408c2a515e8bb41d79c9ddca4a3345a1d97c3b7614b07c2fc28fe203ede479ab
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/harbor-jobservice@sha256:e21893763dca9080b117b6ab7cc4daacb8eee9cab7133a7a04ec3f77774d211b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/harbor-jobservice@sha256:962fd6da6940d7195cf30f29c7401f880976234f036b2c1f5c759ccb9f93486d