Sign inSign up
Grafana Loki Canary

dhi.io/loki-canary

Loki Canary 3.6.x

CIS
linux/amd64
debian 13
Tags:

3.6, 3.6-debian, 3.6-debian13, 3.6.17, 3.6.17-debian, 3.6.17-debian13

Index digest:

sha256:562476183767dfe332613b28a76c6f475698fcc0c0a6c0080f98cf1563470274

Manifest digest:

sha256:d7c8196d2114b6907ae1c44e133bb9f4dc0fa3465edcc33564197823edadd39a

Size

12.64 MB

Last pushed

23 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/loki-canary:3.6

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/loki-canary:3.6 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/loki-canary@sha256:7af399922b29caa04f1f4420297bb510e22039e474d00788b3ad5019f416274b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/loki-canary@sha256:1cd7ad308064dfb61dc9736a68f74eee3857bdf6a3a2a88bfe928bb778e34206
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/loki-canary@sha256:c20ed155cda4b78addfee47567c38881538adc560618bcb51c474196ba74954d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/loki-canary@sha256:5643f3b80301f277ca889d5aa6eb169ca0759a9c13edfc023224069ee547c0c8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/loki-canary@sha256:79f3cc278ce42f615406b0ea61b9fc1df17941656b60c232ad91f42c1960ae13
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/loki-canary@sha256:c91cae1f6bd1e420ef75f2f67f780622f48a6d70e4b108f7399aa4e1f78289d5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/loki-canary@sha256:304d826248c8e276216045eef0571ecabbc239dab1c1f1cedb5424fca6914716
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/loki-canary@sha256:8ae406126b927a332c4bb52240a1cef3e86e3760b48126d000a4904380b66985
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/loki-canary@sha256:af6e2d1561119861ebc4a0e24e10a395197c8b9a8d25dc2d2f054a83ec8f0904
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/loki-canary@sha256:a95f65442ee297425f340d19ff755c2630f0a44769a89e99ac307bbc47cc7ca7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/loki-canary@sha256:bc854eab9b020a241f56326f3294c38afc720d93a40a1ec01f175fb6679ee832
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/loki-canary@sha256:2099295a4632ce37b8a45091b07e25b810c2531585a0f9eaf3b75a1732949650
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/loki-canary@sha256:85849ba1e226b8085c55d13ab0e8e3c6ec0f20c1c79138a5c37bf9035bf47295
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/loki-canary@sha256:b8a57209fdc51b134d00ba33878048ce3efce1c2755ed091ca02b0850ba0d5bb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/loki-canary@sha256:52676b20228c2e4e0b501dbe4842f909059089b9cb1d1f0335891a921e96203b