Sign inSign up
Grafana Beyla

dhi.io/beyla

Grafana Beyla 3.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

3-alpine-fips-dev, 3-alpine3.24-fips-dev, 3.37-alpine-fips-dev, 3.37-alpine3.24-fips-dev, 3.37.0-alpine-fips-dev, 3.37.0-alpine3.24-fips-dev

Index digest:

sha256:6bd3caa551976d0f579297d0af96f46aa8d2996da99959c1d1717d72f3c36f07

Manifest digest:

sha256:693e1b1f0caf44a444bd76b8bef5b43c23d63d6db618c67f4768246fb7594624

Size

52.54 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/beyla:3-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/beyla:3-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/beyla@sha256:969d0f0edbe87fbd5d22dc5f7ee964705c234b5924875f785db3171f181de0b6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/beyla@sha256:c537ced332462df039bf56addc35e5e43ca3553779c1e6b49008dffbea42b469
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/beyla@sha256:dadb61a4d9899b17ac986472a7b929b39356eb3cacba5db4309ee9c9ca17a3c1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/beyla@sha256:f5d115a8ce452defe4f02823ae7b1224fd7b84bfd9c3bdf8d8d3065a161789e7
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/beyla@sha256:8900da1d7ea49377bb8311b35b7ccff4d88d6a3aadf1dbb97ab24212206e1418
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/beyla@sha256:168d62e16156186c8055787812c2901cd6d7742e833c6eb64c2e3318f5ffa01e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/beyla@sha256:6ced47dcf8fa7e9c15797e9fbc0a847985d87bb7d40f132cb8adc82dbf97adf4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/beyla@sha256:0a4d2ac38402b5a8f312212278e594cbe3a5798134df969cacf7028ee84193d4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/beyla@sha256:8065c1272f83099ab64ab55d1d06b5571d7fac5d7ff6984f9405a3cd9708c661
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/beyla@sha256:ce28c52256d4a3a7960333b51560cfd9d1a42383e215cd2ffc4bd4f1121540ae
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/beyla@sha256:7225b33a007ecbe7f5f9946e474dcd092dce5877987de6c0c2872c47d3d75811
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/beyla@sha256:6eaffb8b3279bfc1a6ab2de5592eaf9bf3e77171e0451994438dcf1ea4789f66
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/beyla@sha256:aa38977151bc3f00c187312d4eb0740ce84027f94517279b2657bda21f165b4d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/beyla@sha256:bbb2ac68ac6fa28a06c2f36e99d9b494f1ecb252d7c12993193f990af627c03d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/beyla@sha256:20c84f1a16f32308e7bf5351dc78592bf28ee48676df928f7764188debc536de
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/beyla@sha256:526b9c0b5347a2b635f99c83a220e8fd608a778962bf5d092fcb18a04037ef80
SPDX SBOMhttps://spdx.dev/Documentdhi.io/beyla@sha256:6e1e50aef9cd8f96d68e4c85e3d649d6ff428fffa12bf57a98af379871148cbb