Sign inSign up
Grafana Beyla

dhi.io/beyla

Grafana Beyla 3.x

CIS
linux/amd64
alpine 3.24
Tags:

3-alpine, 3-alpine3.24, 3.38-alpine, 3.38-alpine3.24, 3.38.0-alpine, 3.38.0-alpine3.24

Index digest:

sha256:5b93f81c242eb53393221871fc1170b1eb5aa5a6047f463a29048ffe68d16c7d

Manifest digest:

sha256:2245178e75d6490220f86471601ebad65f8209d691e163ae5c4ebc6e464e024f

Size

28.65 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/beyla:3-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/beyla:3-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/beyla@sha256:ad26980d1c8de8316f62acde1ce2bf6e441b69f602a4cfd3ff637aaa07f2017d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/beyla@sha256:508483950c6434197e402429a9d9f7a9c6b6ca1cdc998d4576882b4c607bd922
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/beyla@sha256:683ce210cdf813624700fd3846f49fad96e9912b41edfcddfc5d5b58bae8a041
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/beyla@sha256:426882254f2262ad5ff2d98efd15da4465b2ffa908d98147312cfec076587027
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/beyla@sha256:f59cc0424238ec181df9d434faf6e69c57c868ea4a5ad879abb278fdbb5ee12c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/beyla@sha256:f9dd3cfcc52892d220f9426cdf97429b1499b3394b60ce17cf9373a86f81652c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/beyla@sha256:55d527ee17a6753a97264afd7785fbe12d1640d0f6e0e3bfd82ad73bd7b76f70
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/beyla@sha256:77b1e8faec821d05e0ed5ae06f1d44eb702a3515a142285da806e559c8fd344a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/beyla@sha256:077478555208d039aa94c536c92487a17c9ac97047bb227a0d96d537dd919bcf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/beyla@sha256:a87f6458493bd6b7677dd17740cffe127fe0b9870816c1df515d6b825342da8a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/beyla@sha256:39ec55345b95aeb18ff83199f156d05380f937da0ba9d744c034ba10dde386b5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/beyla@sha256:0ca62eff64a10b2383e350d7badc198513e40e8973be6a1df17dbb9c17a83eaf
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/beyla@sha256:731bf9f84285554b9e3fa163d7f2cbfe5b1420c1476ddf0f02f33bece873371e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/beyla@sha256:c8cb28ec4e131aa1c4043c0238f876e276d97d7e45e16d151620dbee868b346e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/beyla@sha256:18ca5636ea39924d264c42e2d67ce3615d7eeb84d5765864471143b72a1138fa