Sign inSign up
k6

dhi.io/k6

Grafana k6 2.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips-dev, 2-debian13-fips-dev, 2-fips-dev, 2.3-debian-fips-dev, 2.3-debian13-fips-dev, 2.3-fips-dev, 2.3.0-debian-fips-dev, 2.3.0-debian13-fips-dev, 2.3.0-fips-dev

Index digest:

sha256:880fb492b45f3a3080330b705fbb105aa47ed96d57711e1f46a1a5e0a835e2bf

Manifest digest:

sha256:4d1ca2b23996d303d6a3e9ee4bb284df29875f717cb36f825a2237d1034e9b0d

Size

51.98 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k6:2-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k6:2-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k6@sha256:2926ee03130219e895e8a1b6d35caf324b59b6fea32776864ce524cc8430af42
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k6@sha256:74e534ff4c2e77fd7e8119bc380c11e37f22a729760899405374d8e3cd948623
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/k6@sha256:aaa2fccb0eb208e0bd67f8446e06b9b6bfdfef3bf2e66d4755394b104d8320c2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k6@sha256:724cbf00eeb7a1c0ed274e917c837c6654e33d61b123a6ab8d5d14f7bf32bb7a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/k6@sha256:6ddd59cf8b5d866b614a796106932e325ef6ebda341702893086b8d312c1c85d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k6@sha256:da458502ad97d9b98cb1d7d1abbb90ba3a9b9f24da1e9f035d575ba4331b8d4c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k6@sha256:8d9c6fad69150fa392a1ab0ac6c6e52f224a188751bdab008d34809dd5468a8b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k6@sha256:0f4eb80a8caf9b7fea9f5a4d944685bddf500113eed04b8927551ffb87b32be6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k6@sha256:37ca59b5cd6c72577ed102da5b9094c832f2df18c6e8d9bd12b975d895f165ff
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k6@sha256:8e95368130dd10aea6f370c5f4818e899a9ff567aa1a1109a32e455e9e0430f3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k6@sha256:50736cf6d80f56a0e31fa73773a215bc1bf2b139d1ad701176751cd8f25d8d5f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k6@sha256:9febfded1e747a00295628a6be0de1275aa52d51717fdea5721d8e8c473c748c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k6@sha256:82d1c64ed0dfde789f00a168e6b5e5d29b48003964f27d9de4dab39d11cdefbf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k6@sha256:4cfe1779d52790c0ca392c7809cf3a839e6a98c8245b98cce9433c8991c50d59
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k6@sha256:21f72838216cdc3a19ee4574968baf3559fb453db56d036ad9f998c708fbe14d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k6@sha256:aec825c9f217ba92ec93aae9ae4a1afed1ee2617026d8f386b41789a5a738eb5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k6@sha256:683e5b64438c71410a2404699fa4caf4236404d627d6a08f16fdab983cbc251e