Sign inSign up
Pyroscope

dhi.io/pyroscope

Pyroscope 1.21.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.21-debian-fips-dev, 1.21-debian13-fips-dev, 1.21-fips-dev, 1.21.1-debian-fips-dev, 1.21.1-debian13-fips-dev, 1.21.1-fips-dev

Index digest:

sha256:8eece4a5a9a2c08ba4a5d71e9ed09971ed12777870560030b5a594b58dfad4e8

Manifest digest:

sha256:e58c8b28bfcb5012c3c7431ce9ed41ee70f896927159e1c7247dd15baee89aca

Size

121.67 MB

Last pushed

3 days ago

Vulnerabilities

0
1
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pyroscope:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pyroscope:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pyroscope@sha256:ac14e00337513634c4a140e3f4d525f9dd9f47337f1cab4d38f6830fc084b01d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pyroscope@sha256:8b19577efc4122a6894a03403e59c3f2f3b0bdfef06c760c254f7f57c049081d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/pyroscope@sha256:dcd71ee681a4d6f251e74514de3277ebcafd7289377a6ebb9371ebaaafec3efa
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pyroscope@sha256:5c18b9dc4484a50bbf3efcca99e10ba25a9dd9585cc329ec5f2a17647202e3ca
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/pyroscope@sha256:9a24226ba8e2c94bd02d10f8849bbe8ce325865bc3b246fadc03e4dc3036dba4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pyroscope@sha256:2f0faf18a53bd772d8ec99f748dbe4d5ca0d1d72eff9d8fed1ff2f7959b92a64
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pyroscope@sha256:a37c838f7a188ad23377cf2a63153a0acbcc8039b7dabc9d71b7da74bd51057f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pyroscope@sha256:cdabfd366d9f78f827fd757384ec5a812b0470a18689b1d2e946694a7e60e624
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pyroscope@sha256:0519519a47c17d318f1aca715a4b4a2608d8ea5d020852ade20701a50f34c64e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pyroscope@sha256:786a4dca20b8578d5b86b164543b8e58a76f802348b0fe7b1593286b26231d2c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pyroscope@sha256:92ed450c1a265c5e317433d995b25f62b26f381c28e9f4a74b10ba922ad2d203
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pyroscope@sha256:7a52de88a8e042b93214f663b24a7b22515e61bd6a095eb396e17d24b90fea22
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pyroscope@sha256:8a379c90e2793433e45af9c649e95e731fa949829d02762f0e6402237ae1175a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pyroscope@sha256:57ac9051659fcd98cfb7bf0020097fae4e29cf963c86ef27bcd316beae6f0c37
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pyroscope@sha256:f07b2c95e2faad391594a3eb8a2ae47d84a27e579b40233142e8df43c4c2e38b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pyroscope@sha256:899433da59411388b90858550f36dcc4acc3fbbc8e5488a780cc3a0b67fc8ca8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pyroscope@sha256:3f5d84aff655b97b7ce8a7f448d1e3cbb663bb062e5318738a9ff41669745127