Sign inSign up
Grafana Rollout Operator

dhi.io/grafana-rollout-operator

Grafana Rollout Operator 0.x

CIS
linux/amd64
debian 13
Tags:

0, 0-debian, 0-debian13, 0.40, 0.40-debian, 0.40-debian13, 0.40.0, 0.40.0-debian, 0.40.0-debian13

Index digest:

sha256:2cbe05a3f20632e7a22afe3b248922b8be55df4639569b135ef1763d4a879096

Manifest digest:

sha256:d2db60be3dc2998555111db8e3ba91164d5b23649d4ecc9c193fff01ccdeabab

Size

15.09 MB

Last pushed

15 hours ago

Vulnerabilities

0
1
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/grafana-rollout-operator:0

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/grafana-rollout-operator:0 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/grafana-rollout-operator@sha256:d9f38e379d0f6b16dddcf453ecdf0fc509336750b346246f0203a0c0577bec46
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/grafana-rollout-operator@sha256:bdb63cd9d51bed27fbf89cc39b252fc466e9e5902218c50546eabdb061211e99
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/grafana-rollout-operator@sha256:4df08273211695079739d97d7056050f811a1eb5ceaaf4417ad84fbd1de18595
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/grafana-rollout-operator@sha256:846aef539f47e4044fc9808b09a01696db538767212cbaebdba057b6912eb47a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/grafana-rollout-operator@sha256:804d920a60dd94a9f6d9a005753d3e8535890629f21deb8363fafa318727e8db
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/grafana-rollout-operator@sha256:74f628b589d9d30d2f44ed71732a56f5284fe3f38546e865d313136bf3a516b6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/grafana-rollout-operator@sha256:e505968b219b9455647e82cdad2682a225e5d8d4cdf03c332322b8bfb3525222
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/grafana-rollout-operator@sha256:7530533ba8120f36c4df5ec7d955a9160f6f3f6f8b4e54a46df9525fd86dad21
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/grafana-rollout-operator@sha256:565e9a379f328805c41dd54b5ef98ebc7676bbc6c5ee55c22025ae976c81dc44
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/grafana-rollout-operator@sha256:d1d6b90ee32cd49681c40bca9256097abd4002bbc6f10fce43838b96588d3131
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/grafana-rollout-operator@sha256:005a05a03a05df61d80f0fe5c0f9b445946b1d504bb236485a177f8cf4d64175
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/grafana-rollout-operator@sha256:2d8a6aeaccb5bbb2069e2a072e4c1147d9479021c94d37d0faab3bf719a17b96
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/grafana-rollout-operator@sha256:aa61ac436d4e33e88901dfff3119576d9f4b256d815877fb46dc28c13a961632
SPDX SBOMhttps://spdx.dev/Documentdhi.io/grafana-rollout-operator@sha256:06303add4b00180fadac288f3fb4654bc0842e4eb8a47efe2d33a6d56ff79f33