Sign inSign up
Grafana Loki

dhi.io/loki

Loki 3.7.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.7, 3.7-debian, 3.7-debian13, 3.7.8, 3.7.8-debian, 3.7.8-debian13

Index digest:

sha256:602ba15bb7e10e71ead719821672516deb671e4e95bdbba9dc979c3d49da6316

Manifest digest:

sha256:89f47e50d91d4783a113a6e012feaa0e35938f39dda2b5cb9ff48de46faa5556

Size

41.40 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/loki:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/loki:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/loki@sha256:e285b2115329a3d475cb6f0a0ab7834c72b7d00efb20b1828380bcf607096431
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/loki@sha256:de3307b78f8b9abbe02e59837ba6144d55ca1d3204a9fa7d31c6d0b7e68aa9c8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/loki@sha256:d9632b0ab8fe39974171513eb20887a90d2715a029df4cdbf17f4854698ae264
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/loki@sha256:9d6cfdd663d9387b1cb48fcb871c50e409624b9e6247204e77cddceb21fd203b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/loki@sha256:b075947ff988d2320dec18caede4e3414d81e9ed9711937bb3be8fab58e9d937
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/loki@sha256:16d4c58148ffeb3bfea1a0fadd87232190080a877b01bb30380a92336122e8bd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/loki@sha256:cc3bcca7e8634a9c8685e7a14737c086fcedd9f8c92581f90c5c1c877e96d637
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/loki@sha256:5508a2bcb45d436fd5ba1a1be51304b01956ad1a2bc76c45264060fa9dc497e5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/loki@sha256:24e560be3e5685ea4cd0c005b2861cf3a33e9e7a12a07237c21ecbb96c6eb143
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/loki@sha256:a96ade519030a37c3b24a4002661f2f6d2683f3ecaa637abb675c8f6973875e3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/loki@sha256:feae15556b6d75bb91089bd659d0a8021465939b329691339e52d05351b4c37b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/loki@sha256:203685e78a21130e6eac9be6ad2b66b0c3e26c749321221acc1c5675a1a0654b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/loki@sha256:c08c2123b5a7f03f88e64292c92d9d32fdbe2f8c70b348c2ddefbb202b5208a7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/loki@sha256:fa0f1f69278a1a840f49a892ecbafc07219eb19de95c15521cb6a8685525f87e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/loki@sha256:9f143481d99be8f1a32c9ce2773cbde29eba9c2b2e40078a778c44b02dc5a44b