Docker Hub
Connect Docker Hub to Ploy to see who belongs to your Docker Hub organization, which organization role each person holds, and which teams they are in. Ploy can also invite people, change their organization role, remove them from the organization, and add or remove them from teams.
This integration is in beta
The Docker Hub integration is in beta. It was built from Docker Hub's API documentation and has not yet been checked against a live Docker Hub organization, so some details may need adjusting once customers connect it. Beta does not limit what the integration can do.
The first step of setup is a consent checkbox. Ticking it lets Ploy capture redacted error data when a request to Docker Hub fails: the error response Docker Hub sends back, with personal details, tokens and other secrets removed. Ploy uses it only to fix problems with this integration. You must tick the box to continue.
What Ploy reads
Every member of the organization, with their email address, Docker username and organization role (owner, editor, member, or a custom role)
The organization itself, so several connected organizations stay separate
Every team in the organization and the people in it
When a member was last seen, only if your organization has Docker Insights turned on
Pending invitations are not shown until the person accepts. Repositories are not scanned yet.
Before you start
You need:
The name of your Docker Hub organization, as it appears in Docker Hub addresses
An access token. Use a personal access token created by an organization owner, or an organization access token
Reading members and teams is enough for scanning. To invite people, change roles, remove members and manage team membership from Ploy, the token must come from an organization owner.
Create an access token
Sign in to Docker Hub as an organization owner.
Open your account settings and go to personal access tokens.
Generate a new token with a description such as Ploy, and the highest access level available.
Copy the token. Docker Hub shows it only once.
If you prefer an organization access token, create it in your organization's settings instead, and use the organization name as the username in Ploy.
Connect Docker Hub in Ploy
In Ploy, go to Integrations and choose Docker Hub.
Tick the beta consent checkbox.
Enter your organization name.
Enter the Docker username the token belongs to. For an organization access token, enter the organization name again.
Paste the access token.
Select Test connection. Ploy signs in with the token and reads your organization's members to check everything works.
Ploy exchanges the token for a short-lived session each time it scans. It never asks for your Docker password.
What Ploy can change
Invite a user: sends a Docker Hub invitation to an email address, with the member role unless you choose owner or editor. The person appears in Ploy once they accept. A pending invitation uses a seat straight away.
Change role: moves a member between owner, editor and member.
Remove a user: removes the person from the organization and all of its teams. Their Docker account is not deleted. Docker Hub will not remove the last owner.
Team access: add or remove a person from a team on the team's resource page.
Docker Hub has no way to suspend a member, so removal is the only way to take someone's access away.
Troubleshooting
Docker Hub rejected that sign-in: check the username and token were copied in full, and that the token has not expired or been deactivated.
That access token cannot read this organization's members: use a token created by an organization owner.
Docker Hub could not find that organization: check the organization name.