Sign inSign up
Pyroscope

dhi.io/pyroscope

Pyroscope 1.21.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.21-debian-dev, 1.21-debian13-dev, 1.21-dev, 1.21.1-debian-dev, 1.21.1-debian13-dev, 1.21.1-dev

Index digest:

sha256:df75d9f4a22940221f1ba26e5b762726d0ef5262659d7822f9ce861e67646421

Manifest digest:

sha256:4ce0ab5bfce5d0a4a77f86393f08a085e4c3753999df88ea5e6d6ad40af10b70

Size

122.25 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pyroscope:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pyroscope:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pyroscope@sha256:a0a771a2472d8249efe2d7488d11c5c0a73935cf134adca1ec2677214885ab10
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pyroscope@sha256:7b188804434ac9e84b893cf02ab8819d811753ec7a5d8d41e0b39edacab27028
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pyroscope@sha256:cec0a1a47a25c063f1a5f91b308d7aace29648759d2fd97d4000c0e983af7256
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pyroscope@sha256:f8b5949638c193c9073601d21ee68b2d6890a2d600a70323df0fc3016c19cde7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pyroscope@sha256:8de04f098a6ce28cbeeb33e5c7962d093ee7a3409ae59ff1f4219b3724a75157
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pyroscope@sha256:ac52eff0febf62d11bb236a78c6b82df13b6355e36149b1db35e5e212b6430f5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pyroscope@sha256:289ca9eb286ad30ca7d0cbd3fa3610ecc9dc397d86e79dca5ce6d1df6bcce300
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pyroscope@sha256:a1492b85b02a58a01226a5df761b9a36e25b4a6afd51a205e97a057de1a82f46
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pyroscope@sha256:e56ccf1ec046689a1c55f84bbed71c0cb41e1e9ddfca4fd94418dce4b6b57f14
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pyroscope@sha256:ecb869573e293a7226fea48c40c2617e5b6b6da004f1934c1932d0ec35bdbc0d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pyroscope@sha256:d7bc910c8363e8e208710e84b2d6b60d1b2b16c90a3090c6a983574d2d4cca19
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pyroscope@sha256:808087fc86ceaa88d61803370535888877af0155f2b7da560f54591b50e26a79
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pyroscope@sha256:7c1cb6ae446770c4175ca19f7795f057c1048506a191f3f451275747451d939c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pyroscope@sha256:e9fc88d29634b38103c86d5e85e84ec4de12d0218d7140df5862fbcfe6079419
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pyroscope@sha256:6e8bf334943ce93d68cdd78e056502c665c972ba11b6f48c451f23baa10d7814