Sign inSign up
Velero Plugin for GCP

dhi.io/velero-plugin-for-gcp

Velero Plugin for GCP 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.14, 1.14-debian, 1.14-debian13, 1.14.2, 1.14.2-debian, 1.14.2-debian13

Index digest:

sha256:478f671c90b3011d9ba79979d36ec82a4d3e58833ae0f23e35dced4766ef03cc

Manifest digest:

sha256:b335835b2c6cdda91a4de7ef2194d7c11f9d85ddeb120627d21e963c5daadf20

Size

18.92 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/velero-plugin-for-gcp:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/velero-plugin-for-gcp:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/velero-plugin-for-gcp@sha256:0b6c30bda0e3cc434d043160af49df5bdfc7d3b52a9bf1f30e5ae46b6fded385
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/velero-plugin-for-gcp@sha256:24d311bba5b44f7dccc7063576b42e5fd53b1a70c382ad46077b48035946aeb3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/velero-plugin-for-gcp@sha256:f8963bf7ea56d70fc71f7436831f903da31a3c8082a91a910ee2d31ca954c8fb
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/velero-plugin-for-gcp@sha256:05ceb989fe7cd73c2e65e84b4627111a26cbf7b24b9809ed5a3db572bd3e9601
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/velero-plugin-for-gcp@sha256:6e970d82aae4440d655f74492da1f2bce3fd0a7d8ca78e63f81525e4884bde6e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/velero-plugin-for-gcp@sha256:a4982489ad97c17948b6ec767f70d4658729aff60ea69abe54c455178c61b266
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/velero-plugin-for-gcp@sha256:ba7397d994996d294d7ce94fb1645a06424e4bffc28c5d08d13c29ee1e39b775
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/velero-plugin-for-gcp@sha256:056c4d76c0adf926f7ccd1172757c65cff93a6a89d89ca312007e791dc3c655f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/velero-plugin-for-gcp@sha256:238c63ef2f3caabc48b6d5050ff2b6d756619c2857cf7d0382212c18044f2d42
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/velero-plugin-for-gcp@sha256:1f4d9b1729ce2bdf33c69da83d539370d07e973406a256ddfad5cf91b96b305a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/velero-plugin-for-gcp@sha256:8a25499772b804af996b34757f4edc637735ea37f72d9df29f8c8e3e5d498fd0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/velero-plugin-for-gcp@sha256:c42e251b7e9dae4aa5e0f1cf90a4d414f8faa9e7ed53fc4f8372b4e8b94bbe6f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/velero-plugin-for-gcp@sha256:950031b3cf4190aee2035baed29b5460cf64b334af21928f212627ab0e78fae8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/velero-plugin-for-gcp@sha256:6b89acc2156007a688444bf69459e929492ad8b157ff23e1bf331ab5af18be73
SPDX SBOMhttps://spdx.dev/Documentdhi.io/velero-plugin-for-gcp@sha256:edb317e92b3667a61a92c3cc7e1bb6fda470db6f6c649f707ec58c850d012aaa