Sign inSign up
Prometheus Alertmanager

dhi.io/alertmanager

Alertmanager 0.x

CIS
linux/amd64
alpine 3.23
Tags:

0-alpine3.23, 0.34-alpine3.23, 0.34.1-alpine3.23

Index digest:

sha256:55a3f61c699facc79a9f55d44f95a193927fe173b7ca5d8f282727a48750966f

Manifest digest:

sha256:39c9e7d6008692c37e0a33823b165e066a19f32ff459e318768585c289552f05

Size

18.35 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/alertmanager:0-alpine3.23

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/alertmanager:0-alpine3.23 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/alertmanager@sha256:54d59071183c8f1c7fb79bbc6cd022414fec844e4e9203e5067208a1642dcf99
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/alertmanager@sha256:627def1582a3c05f7cf6a2705da5f52e5c0952f3157b914dbb9d3a31e14825d3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/alertmanager@sha256:5b37fcca58d4fb7c1b77eb4d7a31dc730ed9405c5675f1122175bb887e3df724
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/alertmanager@sha256:a8a1dec3bd150a4d1b1d77dccd22a16f25a2182468dcf2735eb52442e7c2bbea
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/alertmanager@sha256:e7992f634628f49a807bedf0a5fb83c440323d1f0e60f05b6e99b581f83c4c53
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/alertmanager@sha256:e44161b112c2984a7cb43a4bf1b8f179e1616eecf8037847bd1c96579a09f0cb
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/alertmanager@sha256:d1f3900b4cfb8be473960e3dfff7ca84e39e09a96c7f21bf7929fb4b754bfbb9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/alertmanager@sha256:19f13a6615a7d45cb274598664d69378e19eef7371218c929795027324bfd7ce
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/alertmanager@sha256:8d486a6c07500f310445845fafef28f177e985df874096507376c3269e275fb5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/alertmanager@sha256:0cba8d59e46269b53889715045586e8603a56b0c62f3ca83201b5005b598fc5f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/alertmanager@sha256:8f850000c74e7a621a899dce91f9d9a2b4ced7ff6f904b29a5f228acf3cd6660
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/alertmanager@sha256:81fa45cfec0f8a7d941e7907b2e5fa2fa33724c4abbd58862a852afd3427c05c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/alertmanager@sha256:d02f66a7af689ef2ef2e9d1507008b7b978bfff286bb78b6da3dbf9f0c7c09e2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/alertmanager@sha256:ce939937ae52680fed731e1538c9bd0793870a856f34e9191bbb19dd5c4e89e4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/alertmanager@sha256:e3c8afc346f48e6394bc8d4b1bbb9dc667bcbd098f28715dbea1a1a871fd0664