Sign inSign up
k6

dhi.io/k6

Grafana k6 2.x (compat)

CIS
linux/amd64
debian 13
Tags:

2-compat, 2-debian-compat, 2-debian13-compat, 2.3-compat, 2.3-debian-compat, 2.3-debian13-compat, 2.3.0-compat, 2.3.0-debian-compat, 2.3.0-debian13-compat

Index digest:

sha256:31a7f6722b5104c5ba364583bb42bd8b99b677b0cc1de6cc2c6cd2ec0f73c6f7

Manifest digest:

sha256:6d0516517b7cb87c806667e1b0e6db90a8e84192e63e4d8eafec03398fd89b8d

Size

25.13 MB

Last pushed

12 hours ago

Vulnerabilities

0
1
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k6:2-compat

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k6:2-compat --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k6@sha256:62eb019a90c608f991c0d77af480771c3416ec6fcd9dfa4e0c922c94495d05cf
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k6@sha256:902a430fa522204318939d8b8c110d2e74d60197018da00b533e9a20d24914a2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k6@sha256:15874183e8351c5257d183c81490b3f876b7881672a78fe035f0993ab5311b4a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k6@sha256:fae93fe1895f6c44133ddea1781f6a9e645ce0de91a9107c2e86c0b70a342f5f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k6@sha256:52d10c1591d3878d8a5953a01789f0d3554f01a0ccf3c219d14d71a2e7290c83
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k6@sha256:e40012bd56be6e476ee4b5514e789a965f9e201b10505403db812b4c460cd22c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k6@sha256:c563a9b5b999981dccfe318c18df31420b56265458d3a431a6d60f48cc93e6a6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k6@sha256:161b1147b690ef17c97d6c764191497fd1e517711c64bc8bdde8a9b6912d2161
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k6@sha256:528823baf29cf3531d92b9cadc62ee56fe94daa026a8bd3bdca9166c0c608c36
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k6@sha256:8faa52e73795dbebddcd3b7014e3240b5b0b11c798022b3b8b8587375aaed96a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k6@sha256:51e220e365c5405a326e47993606b99caa8c7152378a69091fcd79c3e963ad36
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k6@sha256:d419d6b09c9016b2131af0e072496f1a3975890180d4e7bc84799239bb1d791f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k6@sha256:6c7c8ce6abd329b0ee201662f3c74965f78af3c9d11ed57007000f4ae6b460d7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k6@sha256:2893d943d0dfbf0b0bc3c6a573580d1dc7b0a2cde7c78bc6a35d9bcab21ce45a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k6@sha256:d2c58f1f5100356b1e7004f582f6d70a0d10a40b736e2dd6c411e3ccc778b19b