Sign inSign up
Grafana Beyla

dhi.io/beyla

Grafana Beyla 3.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

3-alpine-dev, 3-alpine3.24-dev, 3.37-alpine-dev, 3.37-alpine3.24-dev, 3.37.0-alpine-dev, 3.37.0-alpine3.24-dev

Index digest:

sha256:595b3f8848f93801529cc4771350b3dcb462aeadbabb95c41e7b8cab35e1152d

Manifest digest:

sha256:c92a654be753924a33930763e284b2211ad3065e43fc05ee59b59937b9a584a9

Size

51.72 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/beyla:3-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/beyla:3-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/beyla@sha256:05b1116dd314281b0c0e78af84f0eabf6d0a672adbd79729bb927f52faf30d8b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/beyla@sha256:9682ea9046b7b1c7ca1ace90bba70cd8b8d7cdd1a057c6ecd60569dce53949a1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/beyla@sha256:2a7ac6b96d8af87d212d3ae3e9ab0c5f9dc6def1b514321c0c5fc3b449bfdecc
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/beyla@sha256:24e2f6652804b7c584ee024ce93d3f8e02c3760fc8c84aa753098a7380544b31
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/beyla@sha256:49db9af3d98f14020879352355187dd5a0bcf27154bb9e9e902f62021f699eba
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/beyla@sha256:4aaf4d9cf8d106867ee53507992a166a791835dc6c64687f346f8b34fd23387a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/beyla@sha256:adc02dafc89c3d81fc35a6458790d40b184441581e076b1fcff45e3c51616cd0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/beyla@sha256:cd2e378bdc99211c2d7082d724ddc83748f89deea5dbd6d107a8980cec8dbf0d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/beyla@sha256:84d2d2469f878e03605cb4b1e24de427ccb11cd23ef554dcd46d6f8f00c051f9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/beyla@sha256:024d4121e019e70fa2d98742fab16c6a3e69b2448638c063381d6e450e78bb0d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/beyla@sha256:2f2744134b14d1427413e35477ca3cfe9948bddb443de8a8104801990064256c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/beyla@sha256:a2e46096c514133f1482cff6658aeb004fb2c289cc9f5c3b0cba51482436da42
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/beyla@sha256:03be85115de0f6273a7192e244a8896f2ca2eee9f2bf30479a0bb8461da4d1e4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/beyla@sha256:42eab99ddc2a7ae3adedd40a3ddf769750f05278ad3d7c304afe8d4894c8d5ac
SPDX SBOMhttps://spdx.dev/Documentdhi.io/beyla@sha256:1703a95eb82878837ff1d8dcf7522eef19068bf6b36d5ffb636c6c11ac3ddc87