Sign inSign up
Pyroscope

dhi.io/pyroscope

Pyroscope 1.19.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.3-debian-fips-dev, 1.19.3-debian13-fips-dev, 1.19.3-fips-dev

Index digest:

sha256:a22d49504d0e8dc5ec27f19a27e36396c88a76bfe127e20fdae4fc2d3e1251a7

Manifest digest:

sha256:4a23358f0cd3129c875dc726e85b3932cf96db7327724c9ac05212b1faf52dba

Size

119.21 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pyroscope:1.19-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pyroscope:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pyroscope@sha256:13a2c120059f62c60790d9e8c3f55e9c516ddcc97d0a7d36f24f5d0414e5c9cd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pyroscope@sha256:556286e5d1cfb7e185bcb689d69fa6c491d0cae732c2869e0760db5ef0b981dd
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/pyroscope@sha256:a6f8f0eb44796511db6b240361d16931ed7273ec1cec494584cd41248dadaf5a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pyroscope@sha256:c0bafd9829670ce51136a45fa3d255d849b45f231845289a70b01deedaeb6c51
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/pyroscope@sha256:a933b9b9485e4606f8f7ee62b1cf753a73005e25af33552646be5cb11d9067ed
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pyroscope@sha256:840db5d035536c7c370c3899787766ce2e7af40092e9c296b96d9f2b00036561
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pyroscope@sha256:3490d20a9c9142e20aa2a032ebfe88c276d4445f11ed542e6b625f849c05f764
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pyroscope@sha256:bbc04972daea258059f6858b5db9ee8a0849e41c5013243f35bef60723835eba
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pyroscope@sha256:a1d0c9d9194a135b68adbef727dc51abd9c8590a787f555c03e67a5f8d190b65
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pyroscope@sha256:7c663a32ec99f974b5163b32d0d5b1fd1b516f0c6a25f4aa333a88151b63815b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pyroscope@sha256:e3e344880e2b2678158ae621bbc2b122aad330a15aed0c993e2cd810095fd000
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pyroscope@sha256:b5e005491f2149bf604b6f2dfb4fc32ed6a20f2a25d5a0a37e7bc463d0eed99c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pyroscope@sha256:b9120bc36c32eb5da8607890e8838f6e1c9b338aa58fcac4a58669f2dd17c086
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pyroscope@sha256:19522af604a3d03ab9e0f791df12bda55dc0a1d936feaf7a76a7980882c071f3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pyroscope@sha256:e7b4efaf80524250174514d807c4f5f94b1650417f281dfb239e0824648fe02b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pyroscope@sha256:1a8ad4c61dc32541aceda93cc143acb1e1c6e3c18cf33a30ecdefc6ee32d17dc
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pyroscope@sha256:0629e7866be5794119326dc70cdc1bead369f80603ae4a1f0202bede09db2a80