dhi.io/prometheus-adapter
0-debian-fips, 0-debian13-fips, 0-fips, 0.12-debian-fips, 0.12-debian13-fips, 0.12-fips, 0.12.0-debian-fips, 0.12.0-debian13-fips, 0.12.0-fips
sha256:d06bdd9a100af7fb72b237244e20a02d74bd8cca24e040923699949e48ee8d49
Manifest digest:sha256:a8ceec5f9f3e62022084e3981164bf77aa4291833c34fc17eeda1110c5443265
Size
25.40 MB
Last pushed
4 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/prometheus-adapter:0-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/prometheus-adapter:0-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/prometheus-adapter@sha256:43128ca9079d1c6d96427bfa34ad5b596b056ef94c5db80626188bf6ac117a8f |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/prometheus-adapter@sha256:2da25f051341994184c7a3939753c030c680746b7f8318a86711f06ba1ff436a |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/prometheus-adapter@sha256:ab5154cc7af575556d312fe01187ec0263f57d7e7881c6e9aea2980839860ac7 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/prometheus-adapter@sha256:bde1271f1b4b9f7fbefefc0556536ed074f0be4a6777bc1d2e5f758be05b5aa2 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/prometheus-adapter@sha256:04483044177f375a3018f5a54e1353ae9c4cfbff8814df02f001e3859d4a3026 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/prometheus-adapter@sha256:eb81768c3a1008be210e34ebc22036a0491de590f009ec507fdb10abbbcc69c0 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/prometheus-adapter@sha256:2ba8130bf541baf4dfd054460f997b151a617d157e6b063c4c8ef32bdf3d4bda |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/prometheus-adapter@sha256:e0d42b4c926613f00e99a6b78dbeba5a15ec053adee754022e110882e896918f |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/prometheus-adapter@sha256:b983e213d88faa661b5178e144e71d24b486fa636b7263dca106ab462a973af9 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/prometheus-adapter@sha256:20de188bdac0f16e7055155bad724a520559e260d0bdc1ac214e57b1a9f978f6 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/prometheus-adapter@sha256:8e24357462ef86de5516e03739426bc9fe445bb6c526ab7e81dc23d28b1cf4a8 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/prometheus-adapter@sha256:4dba87042a9e7d0f401909fe64b6a1611e476393c4a3147992a04b307cc0be59 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/prometheus-adapter@sha256:e8232382604355b3932be4879c5bb05e0aa2d8d7e7708a86f1e74dd5dccdc02b |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/prometheus-adapter@sha256:a6691a6e540e306734ad059a181143cb7c55177469460aad5e942a71f5050a32 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/prometheus-adapter@sha256:3dec305281c20237c989e981e0bdf5efe7c754df20f4bf02c90498f4f546caf3 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/prometheus-adapter@sha256:e4c671bc21fea2521bf77868cd856eb94eb006e2926957c5987b63a134425605 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/prometheus-adapter@sha256:8b3fc1df1da4a2a3d38a1c6e54e16851a70a9c233b3dbf5f4af9c4b909428566 |