Sign inSign up
Prometheus Pushgateway

dhi.io/pushgateway

Prometheus Pushgateway 1.x

CIS
linux/amd64
alpine 3.24
Tags:

1-alpine, 1-alpine3.24, 1.11-alpine, 1.11-alpine3.24, 1.11.3-alpine, 1.11.3-alpine3.24

Index digest:

sha256:35e3d4b689ef49cb1f0866a0cec09d6b8c940515ff490ac5b38c0d0f6a117352

Manifest digest:

sha256:f25c9672c9dea3290a3a525f095713e72059387a9d96181b79729a244d977d55

Size

6.64 MB

Last pushed

8 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pushgateway:1-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pushgateway:1-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pushgateway@sha256:031bed6e640c40dbc0b822d692bdcbb0416de242a46c315c48281df61c378d67
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pushgateway@sha256:e7cd672a611ab66c8f5e1f0d4bbc6b9f52db86a41cd07ae5ed78a45ee4359c23
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pushgateway@sha256:c3455fc6bb443dda84f4ad42343009902efabe653215b1dc16315175bb290b40
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pushgateway@sha256:8498c8d627afd2e9ef93e789a6f79c7fb9878a6d6adffeae8ad4fd17ecfde0ef
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pushgateway@sha256:ebf63074841a283ce4c802e0dfef9fca0e6d350907680fabe454e8a05a090a49
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pushgateway@sha256:5c9c9fe7c8c266750d9eec54a56137c6c4d45f5af78a05a9b05e200cadf2d611
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pushgateway@sha256:bad36152b740e9f6a82ee7c29092df5fa1f0d56daf7ab5021c32d74d4662afa7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pushgateway@sha256:e378baec6f50f32981961d5867a0423c001e8d3335d4c788ad72f169b34a4398
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pushgateway@sha256:433ba00332c31abddb2ce4a075b45f760c330aa4a47389bf6368e44bd78a439f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pushgateway@sha256:31de1d9e63a77ac1bbd591e794292afedc46325c72f9a0a8311f2121df85184c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pushgateway@sha256:389d20d94a3f04e3500af822c51df6ab7430be3c9e71ece542bee6f46724a9fd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pushgateway@sha256:ec48bfd625368607e33b279dd248e14c854236a91aed196c74b55d6e795e1aa5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pushgateway@sha256:1fc8e7424fbe5aa422f88987497e8cf6b59df578ca2ca6fc885eedeb848a9af7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pushgateway@sha256:61654bb712ab67fe006adf3f904f023e910a41bdec65562bdc8c6bc9acfec2f5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pushgateway@sha256:1bdc372d9084d7f9ae2265df4c0b9dc340b0a36b4a2827654058771eea7bf24d