Sign inSign up
Grafana Beyla

dhi.io/beyla

Grafana Beyla 3.x

CIS
linux/amd64
alpine 3.24
Tags:

3-alpine, 3-alpine3.24, 3.37-alpine, 3.37-alpine3.24, 3.37.0-alpine, 3.37.0-alpine3.24

Index digest:

sha256:666af1b8b15c68f55ec71f8d621028dcd6bf16587f4cebd35a03ad877159ad5f

Manifest digest:

sha256:1f7c1893a8a1f45f996380b766abb57c9ed3f501a91a529659053747900cef3e

Size

26.39 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/beyla:3-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/beyla:3-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/beyla@sha256:dd3d6e31ab224df2640f74e5787877fae4c4dc5753cc040fd84991d1b0f6768b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/beyla@sha256:f402a5a7fe7f49c72c5d467ba7d79786634f792edffe6bdf1bc80a1c34c1dfe9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/beyla@sha256:7b6f759cb37ed005b16a80dd77983c4c357a2c826c1b61d4e18605122cc30870
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/beyla@sha256:a33fbb38243543b18af51d1620ac66b821ca087cd7c3a597b2f9ad056afa4b22
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/beyla@sha256:67da8466eb6674b9ebd6148d9c89b92e756de89cfc209fbf21f7eb768e979f02
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/beyla@sha256:ebef83b59e658e28436f2ae4ea6101cf41b25e8f42859ec8140d12df86386fed
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/beyla@sha256:71ad59bb8065344e0fd563738dcafe721801b7df076d3c88fba9cac21e474d30
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/beyla@sha256:66e439d21041bd38ac0b82d6d88018d742fdfab88f04fc8d9c785c65228f7641
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/beyla@sha256:3cbb44fc48f468d6f4ca1f7ac441ca94e3ab8d0f5dc7f2fabbfd82bbb0b0a333
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/beyla@sha256:0fba97c4c9e1f9e2cf6ab51043e8a4b1b1e4fa53a5459336c9bb05f493c45315
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/beyla@sha256:e59d7939db562b02f705e35032aa0ee7b8e0a61cc9b9bbd861c647f1f2136da1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/beyla@sha256:c245a98bb051ce878ec3a5a82361b04d91d675a8a4beee74ff69764d15bc7252
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/beyla@sha256:b4127e01505aa91f54108cb1da5b4974b3054d88037554464dc4ba9d4f7a20c6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/beyla@sha256:fbdfd264ee9c484ce4caf207c9258c548d46e7b88ffc959792aea59d74eea234
SPDX SBOMhttps://spdx.dev/Documentdhi.io/beyla@sha256:0cf7d0d7cd25a94f8ef5cdf0b57baed2710c80b5ff6c32d36ec691ee8f06acf8