Sign inSign up
OpenTelemetry Collector

dhi.io/opentelemetry-collector

opentelemetry-collector 0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

0-debian-fips-dev, 0-debian13-fips-dev, 0-fips-dev, 0.160-debian-fips-dev, 0.160-debian13-fips-dev, 0.160-fips-dev, 0.160.0-debian-fips-dev, 0.160.0-debian13-fips-dev, 0.160.0-fips-dev

Index digest:

sha256:5f4fd4a152ea84069655d13f07946a8ac4f1652c94b12bd46f726ea586b7aa64

Manifest digest:

sha256:5186c7eafcb2347fc756e8d4deb3ebcbaee6f355301cb09283f85af715c7970d

Size

86.33 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/opentelemetry-collector:0-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/opentelemetry-collector:0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/opentelemetry-collector@sha256:a650fc8964a06415761dd8d582921bd2eb3bfc1bc2b06d09afc83335bea8f562
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/opentelemetry-collector@sha256:53302de2c8140f85e22ae96a2e69c73aabce82a96dd48c8d1d5c2dd12286dfae
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/opentelemetry-collector@sha256:edb0171b916e72a3a6d014e7284c8c23112ed22de5c94161307ca68708662d61
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/opentelemetry-collector@sha256:dff774b61e175a0f4ba83365e34ac10d48b37f40ed7fff7053f7f41390108eb9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/opentelemetry-collector@sha256:f23a36fc92c07427c6ed419a354378f4b28ea1adc063d1b33dab7aeb9cd0058c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/opentelemetry-collector@sha256:a5b02970754dc3c4cbb0445c14c14163263e7dc0cc71de0b91644a715519ec27
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/opentelemetry-collector@sha256:72495269f252ff4acbc80bfc3ce1bd2fade27c315e119e9638b133d6e1a69064
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/opentelemetry-collector@sha256:9be1be76bca5017631fdc15114dd221c758d9a97f911aae891824e9ccc223f6a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/opentelemetry-collector@sha256:7e1e341131dd6cadc77270fbe9fa9f029848af0243277923e253022a9d69201e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/opentelemetry-collector@sha256:b9ead1a4320840f1b57f83553506c212a7e0cb7a649c059f08e637778e1cbb85
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/opentelemetry-collector@sha256:c903b1c4cca086bca7dd51fef5f0b8d240a3b21d94894923c97ec4da41b8ca9c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/opentelemetry-collector@sha256:3bd39188423d5545b036b3f70c44831210d0b3c6e1ee90920707319f6e43fcc6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/opentelemetry-collector@sha256:7bc9ee89bc91d024090c5b5b325130b0c423bbb2e3606adcf6ef48beea041bfe
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/opentelemetry-collector@sha256:6c58d6c6c0d8b2733bbb90ac4f81427df8b5f0ed1e722187642777353600433b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/opentelemetry-collector@sha256:858e603732b0dfcad3e6e220437a36618dcef95bbdfc8521bb20d0a8f865c478
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/opentelemetry-collector@sha256:50e71115a3d21c53412e9409dea065d6c5d201fdad35d1ba157ace36be10e296
SPDX SBOMhttps://spdx.dev/Documentdhi.io/opentelemetry-collector@sha256:8462663d0b3cbdf58073b9431010ed8c70324b5c5615c654abef0fe478121eb7