Sign inSign up
Prometheus Pushgateway

dhi.io/pushgateway

Prometheus Pushgateway 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-fips-dev, 1.11-alpine3.23-fips-dev, 1.11.3-alpine3.23-fips-dev

Index digest:

sha256:8f2f57d27339a0f5b69546c7a9598484eef18c98b5b1defbca977b46fd8667e3

Manifest digest:

sha256:5a5ab5d8436c4d40ddab1ddd4b079254d3e39a78d60426d4664387b965228dca

Size

15.27 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pushgateway:1-alpine3.23-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pushgateway:1-alpine3.23-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pushgateway@sha256:9755f6b5dc49fb99b7e0b26e16bc4aa53d5dcb064052fd481a716ac1515c59b0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pushgateway@sha256:f7e3c13bf2acc1e2cce11e1a44cc7ea84ee23c695214be598cf91c2effe13433
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/pushgateway@sha256:afd4f36239d28c6bce3b347efb8a7eab7955851644f12a470d7959548efa70ea
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pushgateway@sha256:62efe3f2805badbd842cd0271e7909773d1b0c5cafecec7910e2b8590db8f5de
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/pushgateway@sha256:4c7fe16cadac58adbdd885beb5c56d088d262c5d0ee2aa3a97e4635baf3bb6c6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pushgateway@sha256:ff942d192cad81ca0fe07345d541e11b67c355ce61141df7c0c6aa408a1be8ec
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pushgateway@sha256:b80275a8142a26aad251bee41bb6450b74903764895477178fddb5bcab680425
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pushgateway@sha256:bd8a71d28de6250aa1e41bf3e657e29bd0682108e170a167dec27a6a5b38e5bc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pushgateway@sha256:3c6493a79d4a415d0a6ced2f4cdcd6b40f2870f40b7d4a38755ff0552246e40f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pushgateway@sha256:0ac36b58cf9623c85563ea9e3eb0314b96613924f8999bf89fbf5cab29489d3a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pushgateway@sha256:6530b1584d06dcf4ddfe06004a440ee8ee3b66cd46806c59bb5f99c3a345918c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pushgateway@sha256:0a01e48d2e1ec8d01dc7a3bd85519d09378b6909011944fc184c3fbb30bea1bc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pushgateway@sha256:a4245140b9053c267162e57b5268f2a30eb1b75dacadc3088f82973eda2075b4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pushgateway@sha256:9e96d425bdec4f8705f001bea6ff76700f79a3dc3fabd88a767a71fcdea6a0da
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pushgateway@sha256:6cd2972cfc945de98ddb407dfaec7f15b5d341f88cb549c90f6eaa2ab834eff9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pushgateway@sha256:dd80cb80bd21d9586d21de8eb32b625f780b3e16a53ca0122391e20ba2cf0979
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pushgateway@sha256:5bf3170a0b23c4d900e118a23e2bf38614fbe01a967ac484c5494c545460d7e5