dhi.io/pyroscope
1-debian-dev, 1-debian13-dev, 1-dev, 1.21-debian-dev, 1.21-debian13-dev, 1.21-dev, 1.21.1-debian-dev, 1.21.1-debian13-dev, 1.21.1-dev
sha256:df75d9f4a22940221f1ba26e5b762726d0ef5262659d7822f9ce861e67646421
Manifest digest:sha256:4ce0ab5bfce5d0a4a77f86393f08a085e4c3753999df88ea5e6d6ad40af10b70
Size
122.25 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/pyroscope:1-debian-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/pyroscope:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/pyroscope@sha256:a0a771a2472d8249efe2d7488d11c5c0a73935cf134adca1ec2677214885ab10 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/pyroscope@sha256:7b188804434ac9e84b893cf02ab8819d811753ec7a5d8d41e0b39edacab27028 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/pyroscope@sha256:cec0a1a47a25c063f1a5f91b308d7aace29648759d2fd97d4000c0e983af7256 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/pyroscope@sha256:f8b5949638c193c9073601d21ee68b2d6890a2d600a70323df0fc3016c19cde7 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/pyroscope@sha256:8de04f098a6ce28cbeeb33e5c7962d093ee7a3409ae59ff1f4219b3724a75157 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/pyroscope@sha256:ac52eff0febf62d11bb236a78c6b82df13b6355e36149b1db35e5e212b6430f5 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/pyroscope@sha256:289ca9eb286ad30ca7d0cbd3fa3610ecc9dc397d86e79dca5ce6d1df6bcce300 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/pyroscope@sha256:a1492b85b02a58a01226a5df761b9a36e25b4a6afd51a205e97a057de1a82f46 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/pyroscope@sha256:e56ccf1ec046689a1c55f84bbed71c0cb41e1e9ddfca4fd94418dce4b6b57f14 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/pyroscope@sha256:ecb869573e293a7226fea48c40c2617e5b6b6da004f1934c1932d0ec35bdbc0d |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/pyroscope@sha256:d7bc910c8363e8e208710e84b2d6b60d1b2b16c90a3090c6a983574d2d4cca19 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/pyroscope@sha256:808087fc86ceaa88d61803370535888877af0155f2b7da560f54591b50e26a79 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/pyroscope@sha256:7c1cb6ae446770c4175ca19f7795f057c1048506a191f3f451275747451d939c |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/pyroscope@sha256:e9fc88d29634b38103c86d5e85e84ec4de12d0218d7140df5862fbcfe6079419 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/pyroscope@sha256:6e8bf334943ce93d68cdd78e056502c665c972ba11b6f48c451f23baa10d7814 |