Sign inSign up
Tempo Query

dhi.io/tempo-query

Tempo Query 2.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips-dev, 2-debian13-fips-dev, 2-fips-dev, 2.10-debian-fips-dev, 2.10-debian13-fips-dev, 2.10-fips-dev, 2.10.8-debian-fips-dev, 2.10.8-debian13-fips-dev, 2.10.8-fips-dev

Index digest:

sha256:b57200566c297aefa36d77a77b045b2402d7e4116c460f58fe8462577b1adb1d

Manifest digest:

sha256:4de5a23b1e409506cf8462959fff48f9485c61a714038d8910400e451b4dee63

Size

36.32 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tempo-query:2-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tempo-query:2-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tempo-query@sha256:511db109b811e78e4257918d6870f1183ed09472095fd876d586cec3495173d4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tempo-query@sha256:e448eec90978e0ee0a54199bddb388c3e45e3121a42aef065cf39b043d534f49
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/tempo-query@sha256:33659013553ea76fe0d00c3d54640d8cc070a7d0df0bae7168ff2f4a88a4e043
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tempo-query@sha256:b045562243dd021601be6707c57c724f5eb22ce8dc3c872593116a73a4bbc04c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/tempo-query@sha256:1fe0b5851717c927ff879074f763731bf69d0147b5fda68205754d008ef67f2f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tempo-query@sha256:6260cb3e32ffff4eef2232d41bf364e64de45df3437330c66a09643879aa651d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tempo-query@sha256:e00e320d62cda7db9b3ef9347fcb61a0cf74237c5cf46b487043428b22dd6841
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tempo-query@sha256:3d7858e5a58998fd146f2737949bc485cdb74d75cc14ec95a632a6ffd6944f78
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tempo-query@sha256:ee9b8fa831d9601a5471d1fbb84b3bb3b04a5164696269d4c3bacf50e0247e45
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tempo-query@sha256:ed2bcc696406929b6612fa3cf2d6dfcc806e4f66a9610a1725f340eadd613986
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tempo-query@sha256:b86ec09cfa4b9bd177c2b1c75f58ad00e29e09159aeb2715567187309988684b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tempo-query@sha256:fe090b09296927106e5c4d1f2c1305e978fc1bbf2bccf1bbab99022998fed69f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tempo-query@sha256:5416597f7219d3cb35ffd11cd1a847596d8c71575a4d73a75390956040d58f1f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tempo-query@sha256:52f0063838bf177f4ea6183dd6a7e46d37be9dd23086647e9c31634f54937685
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tempo-query@sha256:404b6d3bf2555e427cc2adf124c8544210116e3af47a3e9083c8f380ac2d9e79
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tempo-query@sha256:4b4205964090a5ad4092003daad911945e4229c01d00de2af3706f16668a2971
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tempo-query@sha256:b544b891d9a77365fa458174711bc74441c2a319d26586d58ca01165af75043d