Sign inSign up
Pyroscope

dhi.io/pyroscope

Pyroscope 2.3.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips, 2-debian13-fips, 2-fips, 2.3-debian-fips, 2.3-debian13-fips, 2.3-fips, 2.3.2-debian-fips, 2.3.2-debian13-fips, 2.3.2-fips

Index digest:

sha256:f96a1f61f19871326246199498ccd59bf76226e08fb67497291e804c06799567

Manifest digest:

sha256:dff36555d94d4ffaa276fd6bad6e3e142f3cd45b0cbb8e3e95ae38e498875602

Size

60.23 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pyroscope:2-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pyroscope:2-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pyroscope@sha256:09164d4e82316a48169f08794bbf77e298e159242c38599018de3007eaf8c5e3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pyroscope@sha256:9a315d647c48a400a7b63332f45d7c5152b7a05b804d77a8a6d8d60988ce516e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/pyroscope@sha256:3030501bc0f302af117b51436bd45cbf50e6209a7866346401a156b0437c94d0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pyroscope@sha256:dfc32d00ab4a0e49baba0f08cfba3471493efb6ed57f6798c4016ea542a883b2
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/pyroscope@sha256:57289b532983fee561aa6c07395ab8fe841f9fcd624b205a3af753068d88a087
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pyroscope@sha256:13e7aa815dc53d843c7680126659ec07f459a41347b811a96075739b9637133f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pyroscope@sha256:09d1eb586e52a14d04d15d14e5400809952d119bd052bc54cc1f1a0015449dc2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pyroscope@sha256:8d2487254004b1436578cf154d0dcd6414d751553c6dd799d3b60cab7236d644
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pyroscope@sha256:21ce8f4cc50e47c5d987b7b1e928006d6694df7a6df2eed42b23bfe22d56661a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pyroscope@sha256:d2f9b7759d5808aceb536b232b2a2984c4abbd770c6f0da3ddcad2ccd73171e9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pyroscope@sha256:0cdbfc51ffb1b974c479c652f92986e2238c3237eccad5ac4040c0576ae23323
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pyroscope@sha256:2c61593dbae9710f5fb21f9f4c347ea0961181f3d83bd81d5a7f7fb6fe0fb868
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pyroscope@sha256:dc9e95966256e9f3f18c0804a4016c776b6dadc34631b306b0019112e26aa53f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pyroscope@sha256:b2be8916394d128ae73b7fa8fca9308d7905471fba0c1771f607ccb16bcdff82
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pyroscope@sha256:e88bfbc98f878d564ba8e7c141f09c98cda6dccc8931bee9db32080e82e2ade9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pyroscope@sha256:4489208075be78847e6eaffd3a4b317e2ff978ccf77ae864bdfbcb625d69e863
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pyroscope@sha256:3429949792caadcce8d66902f229e65fb1a6e10dee3b324c1a2c5c24e85b8797