Sign inSign up
Prometheus Alertmanager

dhi.io/alertmanager

Alertmanager 0.x

CIS
linux/amd64
alpine 3.23
Tags:

0-alpine3.23, 0.34-alpine3.23, 0.34.1-alpine3.23

Index digest:

sha256:04619a2f32d0810af7b71c50df57e5a659dd17ac27e57cf49628df6333af16e8

Manifest digest:

sha256:e446569cb71552d2aa4facfbaf9cae87d5fe2de36aaffcc65f4e08eee62d2c34

Size

18.35 MB

Last pushed

19 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/alertmanager:0-alpine3.23

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/alertmanager:0-alpine3.23 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/alertmanager@sha256:a1ac6b37c3160efdf14cb7f11645b1b7cf9cbae49ce5f1939668c7c5bdad8b5a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/alertmanager@sha256:0ae0341ebdb4eac21384ec151137740840e5edbdcd54f3f04d477f08c2a7c1fd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/alertmanager@sha256:1871cd034d0e3101e48225ae4ade14caa76e2deeb6eb40d967aa67276b24fef0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/alertmanager@sha256:0c43e935ce618bde606bf8f3f01de0e58c1b4f8fdded00a5f150b85834496536
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/alertmanager@sha256:447a14db194ce483873389f68972191754ae7fd7f996cbcfbe89217d97f4a29c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/alertmanager@sha256:31f66f4456e56044d492b7fba8f016523ff605ea46b2544b0de29073c3c41088
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/alertmanager@sha256:f3ce668aad79d7b95d16d6fb84e3a1f444864468da85c34f7fc2a0da78d7e0f5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/alertmanager@sha256:1839cb7fd199b9c79cb1e4051dbf684b12699bac92f676b56a0bdf136cf36e1c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/alertmanager@sha256:f89161e0b38f9d9ee646f52145e8e02d655d0d7dbc283d5fc9ef5fbc0177584c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/alertmanager@sha256:d7d709b98b6b946f0c58c0aec5a4d420209fff961565a1889f5380e857c93e34
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/alertmanager@sha256:7b6c62c2082b1a943ef30bf1fd9d477fd5cb0f60937b651d0f550de1a69d3c13
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/alertmanager@sha256:e6828f5a52583c67ff16b4976a44be88aa44169c3c259253384a07473fbfc99c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/alertmanager@sha256:e406db141899171f9c91f47e1471724526d5176845ef539005fbdd1bae590fbd
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/alertmanager@sha256:fd36137c3409fa78ec98a79a85fe0e398db5453e606bbae2fad892b2e3e8218d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/alertmanager@sha256:0a6eb90fc57110b3cea3e1eaf02de044545c3ca5de05c9001f7b2c3aee794008