Sign inSign up
Velero Plugin for GCP

dhi.io/velero-plugin-for-gcp

Velero Plugin for GCP 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.14, 1.14-debian, 1.14-debian13, 1.14.2, 1.14.2-debian, 1.14.2-debian13

Index digest:

sha256:0dd6b7a074c7003644942347b7b50677c0bd0d77de67145a1b21fddaa9453da0

Manifest digest:

sha256:4c6d504475bd2217ad6a5fadcd4cff12db647f4ed590c034645d1b3769cac921

Size

18.92 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/velero-plugin-for-gcp:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/velero-plugin-for-gcp:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/velero-plugin-for-gcp@sha256:c9dc8b71ca9ab1a61d524fd2e074ae2dc78a7425d97dbd3d39245dea272696b4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/velero-plugin-for-gcp@sha256:51984fefb9ff51c467d41112cc811e632f71388250e0980a2522f7a46fe513ac
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/velero-plugin-for-gcp@sha256:ade72814b3af40a97fe77b6ad07e7cb0aa430d250f24552bc8daa5bceaa6ff22
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/velero-plugin-for-gcp@sha256:506264396f3c72da6ba0b737520a14d6859a0f1537b744e2c00037ff1c6a7f45
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/velero-plugin-for-gcp@sha256:674c26159018f6e4a5a443502b618c298a8a97373f657bfaca7cff208417bfcb
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/velero-plugin-for-gcp@sha256:c84de46dd09a46c15fadd29aabf2afb8a4035bf73829267297b680a2c2af2fdf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/velero-plugin-for-gcp@sha256:13a4a27b6e44a8ee35493370ed388b245619cc531886e5d35aec0ddca6a45de0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/velero-plugin-for-gcp@sha256:1087a68e0b43c03252b18c1ed0f74ac3bb084e156d1673be4a513012d3114a0a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/velero-plugin-for-gcp@sha256:9530a3461dc60cf8c370c70005f2ce3a4a10d889fb1ce0111decfe05fd1d4604
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/velero-plugin-for-gcp@sha256:22f5ea6dc268151db071cb45547ee4df2383118c46ae031223851a1ec11f7686
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/velero-plugin-for-gcp@sha256:57523ac821e56d358beb3ea7c8b381b4f94b0d695eb0d6748f641a41a1c6c58e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/velero-plugin-for-gcp@sha256:70f53532b95863b67be7491173584978b0cc44ed8300342721290d6d7ce71d71
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/velero-plugin-for-gcp@sha256:ca06b06157753ff0dc9ad0cd07f8560eb61b8db3014fdcea47b3d4d01709d944
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/velero-plugin-for-gcp@sha256:253da137cb9a93872ffdc681f002dc28b1f81f5d1328446cceebf24b38f2a544
SPDX SBOMhttps://spdx.dev/Documentdhi.io/velero-plugin-for-gcp@sha256:f7f421c345417fdbab565d0c93edac3fa9966d360ed48efddcef177999d242c3