Sign inSign up
Tempo Query

dhi.io/tempo-query

Tempo Query 3.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3-debian-fips-dev, 3-debian13-fips-dev, 3-fips-dev, 3.0-debian-fips-dev, 3.0-debian13-fips-dev, 3.0-fips-dev, 3.0.3-debian-fips-dev, 3.0.3-debian13-fips-dev, 3.0.3-fips-dev

Index digest:

sha256:eba64e0ea171a7a322dc8bb69c159f79688f2c3281fcbf06b32d4e6709edc8d4

Manifest digest:

sha256:f341146055f0362cf8397672b4e5cf68c554162fa5d5ba458f4115eef59081ac

Size

36.24 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tempo-query:3-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tempo-query:3-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tempo-query@sha256:4232e15f35049b6ee103ea54c09baf07e4d849cc9eb5b3e2235c7b7e8d8103b3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tempo-query@sha256:473e7c4fe0bd857df93ff827846ae45e258335f7ec066087107466c80852f6d6
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/tempo-query@sha256:6a7b35412782a318297f8f0fb369ba7caac1812057b939a3c1d8419aaa19e7ca
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tempo-query@sha256:4a12457273c63028f50bf0babd5da7c956477a3ba0e77dcf593fb27d7d51fc89
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/tempo-query@sha256:8d3625dc783e7028df2faec1d7fc3668c196fc05b1b07373d6c5b0835b091255
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tempo-query@sha256:085b7dfddc7d45de510ce9727b7ee91c37488c3ea2dcb8e433b2eedaa1e56cfd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tempo-query@sha256:3b75f597177cb77cf934351776ad408f4f50eb4e76f9e1b6dcef3c513251036a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tempo-query@sha256:72cd8cbcbef6d51855dfbc91aca62687958dea80d1c60de0d44a9b483ee7cdce
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tempo-query@sha256:5085f2b22b0c4c29f89aa1c6d925b8967d4bac8124d1a63eece2c742053316c6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tempo-query@sha256:a5d2136ed017bd0c8a138b122563d1880ba057e389373081003bd3d8e7cdb63f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tempo-query@sha256:d7fc7163ab20858be3c6e46886826e62dc754d6371f3e881c605b329142815e4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tempo-query@sha256:0a097ad2770a805ea2a763d6b7432d093bcab7cc975fdd18fe81390c6f1efc20
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tempo-query@sha256:028760675faa1872e073e06cc5ec3b1c9d5e364563e135896de837680de754aa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tempo-query@sha256:36f926e03fcb374c945a118dd0ebff2bb27fff7f96a167a168a37940e930aece
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tempo-query@sha256:e6f642282914493b724055288dd57b81cd0e864537743b60fba41316d4b5f5cb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tempo-query@sha256:bd3c3013f148193d242fba89c6e60ee1df1e1ee02b98679b560b57f1f6547b34
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tempo-query@sha256:844713638e62b0f469d96032e3f86f36c32575ca2865f60aa299185d5ebb80f7