dhi.io/beyla
3-alpine-fips, 3-alpine3.24-fips, 3.38-alpine-fips, 3.38-alpine3.24-fips, 3.38.0-alpine-fips, 3.38.0-alpine3.24-fips
sha256:bec971eaa443961d7121199628bce29ff9f9dde48450db614799fd8745376dd7
Manifest digest:sha256:0fd078d95630e203621dc19b489714a5b0bab0695d4cdb2175bc876f0e66ba7e
Size
32.07 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/beyla:3-alpine-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/beyla:3-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/beyla@sha256:6e86d86f54d61be82361453131ac66af2cdbcd46aefe0d34e6a2e2f1cd8a37ca |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/beyla@sha256:8aaa1360ef311cc18f16e1d1f489e3ea7e5df7be2f98ac20b9a48897e677e216 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/beyla@sha256:70b715448f80c281b7c1e7e5a9ec85a69210f6b5ced9e81f1c162f8f950fc9c9 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/beyla@sha256:05dc4bba8a2ed9a4f94dfd1b6051bf6e0f39d41b702585f59596177815241771 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/beyla@sha256:4431a689cd227772fcfa8df6d024eb26f9ca75be29464aed436127ee6072dc7d |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/beyla@sha256:de0abd696f384213ae58c3fad572a8ea0ab84b276238161f9fef07bea544294d |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/beyla@sha256:3f9345e8c1280eb8070008550c2f11a68bd8d05e571babd8607361a9765ee09b |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/beyla@sha256:a37445befa407285b2d048e12f940895f18bdc5fb1d8dc9d60b18ec98fc83074 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/beyla@sha256:587804c7dac25fc629f7604d385ae1a67f6ee44f623f85416f57784a2489129b |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/beyla@sha256:d08835108ca70d50b28cc54271affc4456a5a6f69cfb8dc906325e7647c7a12d |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/beyla@sha256:dc8dbdd3b1cee856d154350be2ef140605bc1066d70df79c4fa125bdfeec39f4 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/beyla@sha256:7fe18252660058cae1dfc2a1902ef1a87747d3239acadbc651cd8cd25b79a677 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/beyla@sha256:1575b4f42c1167cd8b5e0e5674eeb4ce118059014d4bacd87793b51d6eff6c30 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/beyla@sha256:56eb6b8c06c308d8e0ef0093630c0ba6e0948710ad8cf679731abbacf373388a |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/beyla@sha256:88b80398970e682b605dee71f44a1015a6ba967f2d46940984efee04ce277a3a |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/beyla@sha256:adc19d58862f4907edf453fda85c4ad0664035b158f3eb123c3c93dfbce9671e |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/beyla@sha256:b7eb72a3d240c270c0e3cad4dfac87ea68421bb58b8dcf27de8effef90698f94 |