dhi.io/prometheus-adapter
0-debian-dev, 0-debian13-dev, 0-dev, 0.12-debian-dev, 0.12-debian13-dev, 0.12-dev, 0.12.0-debian-dev, 0.12.0-debian13-dev, 0.12.0-dev
sha256:17008d5390c247225ea6ed0f7817950b51f5e72d6d9bc523ca6b4b48a6f82995
Manifest digest:sha256:f97ea2b96b9542ee66c09f4f60287052d1bbfb56e697bf47fbe978369c695c92
Size
56.88 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/prometheus-adapter:0-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/prometheus-adapter:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/prometheus-adapter@sha256:29faa71e14cd068b483bb32e72ac7b9b508ff75029343b61b0ae80f66bcf9386 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/prometheus-adapter@sha256:a35fca256c55c73c2137c80326be69914a08415609bf50bae472b447945c239a |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/prometheus-adapter@sha256:6e3460ae9cf8090496415060d1675aa3ee6e3377809e4cbf10b1ed9a4f1f7dac |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/prometheus-adapter@sha256:816e20903a4708d4a85ba27411c61dee5622eddfabd77cecfd0b29a45c7c5690 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/prometheus-adapter@sha256:3f6f0d79ffa50b043e9ba3452c6dd7d40929d412a5e0a64c3f0b5a3f614fd79a |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/prometheus-adapter@sha256:14a48f0305201b40411c84f34cf0419a223737c799eb593b158e8ae36147d507 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/prometheus-adapter@sha256:19101de7117e080fccd65d821f36a78e61991a34cb745e5f6a6e545951248a32 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/prometheus-adapter@sha256:98188824cd2633da2618247a66411cdf92f3ce4a7dc29a08ecd67c4e02337e78 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/prometheus-adapter@sha256:7f6bece85b83f09ace0b7ea9dd8805b43e6b05d3ec3d56ab0d8d07bafd49efb1 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/prometheus-adapter@sha256:64b39ff9e472ede9a90ea1e699328e5e1d7229847b7538da4ab800dd838a7b46 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/prometheus-adapter@sha256:5c48c683f7c9940c3d9888e8422b7efa8f730dbf0c5096b932996f6b80f9837f |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/prometheus-adapter@sha256:77e19b37d8c7b4d39a42df855f435842066391f57af6d32c24dcc1f4d1f6b58f |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/prometheus-adapter@sha256:551f3cbb8cc1b5c70fad2c9b9f77ea711d68f8df0d28936b9134c50e7698fcc2 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/prometheus-adapter@sha256:55238cc56e39927a11956077d74c3b304d099d1aa2b29378d3b9cd8fb4803fa7 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/prometheus-adapter@sha256:2032af31ed7db531fab11e6f77eadfef866cd9a011a20a58e7d87b93e470bcfb |