Sign inSign up
Grafana Loki Canary

dhi.io/loki-canary

Loki Canary 3.7.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.7, 3.7-debian, 3.7-debian13, 3.7.7, 3.7.7-debian, 3.7.7-debian13

Index digest:

sha256:d73c5ac6111971be5f61359486b7678f5b935894943a0321cd02381b79ecdbfd

Manifest digest:

sha256:69589bbca899f489d60fe0285861c5a155df2b2bc8428168a265b1ff7abf76f5

Size

12.06 MB

Last pushed

15 hours ago

Vulnerabilities

0
2
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/loki-canary:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/loki-canary:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/loki-canary@sha256:22b14db7c74ee35037e0027b9195a7e5c9363b1d5c8063c2ff293a6e3a96806e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/loki-canary@sha256:e4f4954ebcd161dcae5ffc390b73701f2cf5f3ba5c92e51216fdd4f432e02d0e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/loki-canary@sha256:3186b5d641f3879226dec4a9b72b817855ec71d7ce0f137467c20809501e9da9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/loki-canary@sha256:35b3f654b1fd5f52391e23f056df842cf61cb1124e5c08da9a6e42e7f66d032b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/loki-canary@sha256:e1e0959abc3e9c1a781ab91cd1f1fa590b6ab1f086c17db264ac563d13f5fbf1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/loki-canary@sha256:0886f12d32724858e01ea90046a1806d358c6788b9ab60cdd80f979252264e8d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/loki-canary@sha256:d0eaad3f7fd15b4deb23c4342611eac0a104a4b4329d3f0aa2298821f407d920
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/loki-canary@sha256:fb5cf7cf5264b5b48aa46e7f5ba285f6920242cc6e2e7645d55d5d118eb16d68
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/loki-canary@sha256:7aecf91407618b8845147631241b1af6188058930c42c6a8812dab7bfcd7f47b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/loki-canary@sha256:4b3a1bb1d04687821b9fbb4cfce47edcf11488fd0acc14a1d446d1a0afdb2ee8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/loki-canary@sha256:941564ebca21fa9de4b11e7d202206320c9dd25f877865af994c56c2d3300752
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/loki-canary@sha256:4eea750c649a2e757fb4d7d4105258779c0055052fe0f4a5822f3721ae9b090d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/loki-canary@sha256:b6b326fd30157455c635ec3fd488f033adcbd608eb84438a1719c6c9f2a42922
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/loki-canary@sha256:ab710673e902a63791c8921c517cc0725ab36adb01a0b682633520fdab16d933
SPDX SBOMhttps://spdx.dev/Documentdhi.io/loki-canary@sha256:2dfe17d4bda7d6cb25a624ad2b311118476450edf0077819dff524c7daf87c32