Sign inSign up
k6

dhi.io/k6

Grafana k6 2.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips, 2-debian13-fips, 2-fips, 2.2-debian-fips, 2.2-debian13-fips, 2.2-fips, 2.2.0-debian-fips, 2.2.0-debian13-fips, 2.2.0-fips

Index digest:

sha256:15ef53bfa77b247334fb6b6fa6d54c4dd535132a64b9b431ec3e156b7861824c

Manifest digest:

sha256:d415befa2f5f6ae21bc2d996ed4cb3daca024375b5cbf2ae53758955cd043765

Size

23.95 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k6:2-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k6:2-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k6@sha256:86eb89325ed47249329797a740138e0de8653902da7c530e9340e4e731dbcf93
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k6@sha256:ad4400e05fa3ed646a329e878089e3c86ff259274fd964c941d757755c880977
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/k6@sha256:ba1f66ac0fa8dfa1c7f988792b8e3e29ae6fcd9dbcf3898bdf95b15aa0169417
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k6@sha256:b3814c5a4adbf770d76e759991a366717ab3961bbc8dc9d4dc83b58189fb696e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/k6@sha256:a319c536f800ba2607bf365972af556ccf28a02580c23cbeb41819af091d3675
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k6@sha256:c8ddc24f93a1ae30c268cbda587bde79d63ca11ae6f5aa29471faa8ab7cb6acd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k6@sha256:1c8f94cd7d56531e1fd98b68af251b9e44300d9dc8a34460f3a2448f0e076c91
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k6@sha256:3c8c1dbe823b5ab09ca0f411036ad53e76ba2f9d39ab0c0bab32aa92de3374c2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k6@sha256:9c3b7043708f54c6598f671a4001ca1118c6eb46852814e0544b33329e92f55c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k6@sha256:595c83b780545857fcde69b9e29d82944eeb3a2949cd57e11c32ea421a1c4740
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k6@sha256:22591c60b8373ee131e801ac8f4881d8913017f9b3d6a1bb88f0f6bfd859f1dd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k6@sha256:1dc79a955433b2828b021c0299423d64bd4ae6782396e0929df15ae54b9241b8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k6@sha256:a2f926dc9f70ee533c4ea3fb007434a829158b8809f1a87fde30f12932d700d6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k6@sha256:dbf0ff114ae1873cb84c17e8187651ab0db8bd9ab0f4b9d9d2af61b87227bd00
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k6@sha256:380c98f772c6bd40e699b48c448f79d869dc412476490dfe1cba17bbdb2fbaa6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k6@sha256:521239de3202098ece22bfb0ba6f6bc405500a16ec62ee9d30d7d66b36df057a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k6@sha256:a01b38c9577c9a70fb974814217d2aeccb2ea4bdfa5166b5f95b903a98e7dc4c