Sign inSign up
Grafana Loki Canary

dhi.io/loki-canary

Loki Canary 3.6.x

CIS
linux/amd64
debian 13
Tags:

3.6, 3.6-debian, 3.6-debian13, 3.6.17, 3.6.17-debian, 3.6.17-debian13

Index digest:

sha256:e89e49f77a0ed4db52d27dc99248581e5f0904e176b5f1487912dcf1750556bd

Manifest digest:

sha256:7e72d3eaba18818722d325ac0fb4e4f33c87a0edf96b6d1d566b892f08b3980f

Size

12.61 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/loki-canary:3.6

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/loki-canary:3.6 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/loki-canary@sha256:0b5cecc775c82cb85cbd03bf021671d89c244881c8355517d3b30dd0505febea
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/loki-canary@sha256:b701d538a92195d4657390e74849f877d9381d43eacc9e0b5dd39509f46bc365
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/loki-canary@sha256:91370455d57a3ef00e8d1f1a4091b245e4a4a682b8b738a58dd3fcbbe687d2b0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/loki-canary@sha256:1d79a2aadad5e4993d8f9b0f3834598ce51353354d38e440af7a2d81b79e2768
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/loki-canary@sha256:e75db7525452697cea7473c89c068559a06e985e5975f2c13d32eda487d4134e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/loki-canary@sha256:a7355faf4db7e0bf470bbbaed8b1929e0b5e0e3156cfb327ad4ef84522df0d96
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/loki-canary@sha256:a4318b81525947ff99bcb0a5294109b199694d4e11f72127332b1a979c601344
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/loki-canary@sha256:20433609ae978f597992e2bec71f792fbd1547c9c46f0e1571420eb1e1bacd40
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/loki-canary@sha256:c62c1b3db407ee1127e9d33e48cb123fc5be7ec17899e6e0c243eb5074fba458
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/loki-canary@sha256:e93d31927222885fec05a3f0fed514efa9b9e7e23338ab7c68aa6d1bd9c5fb1b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/loki-canary@sha256:8d7759d72e3fbaf305ce5ce34aaf26daa1539deca39e6cce1ad47524ea7fb415
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/loki-canary@sha256:73ea326639dc96a5a90b29c36432886e209e0b0eaf4579a44c8b37722d328ede
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/loki-canary@sha256:a17364d469371e24888335a0beea38751e16ac413e5d942d2011f8061f6ecd63
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/loki-canary@sha256:f174288558a720acb255df5604350f040ba2e9442e8e01214a3257cea17d2649
SPDX SBOMhttps://spdx.dev/Documentdhi.io/loki-canary@sha256:6f92c3e131cee7d477ea7e2bc484b416d235b0eccf1296d070ed8be25a7a477c