Sign inSign up
Tempo Query

dhi.io/tempo-query

Tempo Query 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.10-debian-dev, 2.10-debian13-dev, 2.10-dev, 2.10.8-debian-dev, 2.10.8-debian13-dev, 2.10.8-dev

Index digest:

sha256:94942cb737099ff086e16eb9875157506fdca5108b01deed55315c3b36db5945

Manifest digest:

sha256:a1ad4cdadac6c19d1d886462b348550866d2c08905ee9a31d89e85d2b82754e8

Size

35.54 MB

Last pushed

6 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tempo-query:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tempo-query:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tempo-query@sha256:0cab991c5b513e4121e8f09d0883f7bdac212c3c7f6a4b373b1fb8781f7ac265
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tempo-query@sha256:38b6ddc50364f50b0130166248612f29e5fbd7d5e8e8404941238dd50a1b5e69
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tempo-query@sha256:94b4714d2200f57389f763198c1ff9b559f61a990e5081be8c32b4c29722187f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tempo-query@sha256:acc11217b4e183ae6a8b84dbc7d4662706ede8aa2b7995a4d9db8bbf2a0baff6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tempo-query@sha256:bb5b0a222f433cbe6008abfa4ef32fc0a8e8f00fb71c8d1b4a2e7bc5c5ec5e6d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tempo-query@sha256:2e8990f6964390cfa2416866c7dc10cb79e3282e5d4cb4067460348dc4864ac9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tempo-query@sha256:daf124b89a85a623610f22cac0cc23aeaa7a1ee6b663e7ee450e1dedc1f5f3f0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tempo-query@sha256:a93af79fa8c0f9c4c9910175f4349164e58073ad45d37265a833b532cabada7b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tempo-query@sha256:e22f9cdf92d1cd4f1ba17f15e0f056a87b5f1f281efcba773e2c5a1c9f234870
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tempo-query@sha256:aa3a54facdc51230e2751ba889cefe615250b0f4784cae34c023ed6631e80eb3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tempo-query@sha256:e8d1a786039bd92862d7b50b2a416a9c3d0dd7a39e81d1507051d7d691b92f8f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tempo-query@sha256:2968658856073bf7dddb7638bdc1b89e27b050dae7eda73309c024d716d1426d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tempo-query@sha256:be9592c11ce4d65427fa4e354a6d3c4a7bd2ef78f996b363f5d38ba9f40c120b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tempo-query@sha256:7552b0fb1ade108746bd7303b51057f307e65cef3cdac163d7d08d42e467f3f5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tempo-query@sha256:2094360ca30e87c6bb0a17a85dee1eab6d31dfd0a6e211cf2d71b3b58c4e02e4