Sign inSign up
Grafana Loki Canary

dhi.io/loki-canary

Loki Canary 3.6.x (dev)

CIS
linux/amd64
debian 13
Tags:

3.6-debian-dev, 3.6-debian13-dev, 3.6-dev, 3.6.17-debian-dev, 3.6.17-debian13-dev, 3.6.17-dev

Index digest:

sha256:77247b10db969297d17b55a1e52475b59ac1fb03b3f3420aee17310d7fede32a

Manifest digest:

sha256:acc79e16b4eb7acedbad5df7f2f9ac1258cef762d2613beab92fe3d1af8f286f

Size

35.24 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/loki-canary:3.6-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/loki-canary:3.6-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/loki-canary@sha256:7389c534201fe3aa57285eeb840f811dead9fd176bcfd3b85e63483b644d4143
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/loki-canary@sha256:6dd2595d2533d14eab930de1eba991fcb06ae1aab5b0e0f60480b0253c20c41d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/loki-canary@sha256:0d000533ec944188a5eefb8445c77e6db1d8228d93cc55f8c68c90b772a0fd88
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/loki-canary@sha256:3828e71314603ed7e9a2e7e20b03766cd3ca22e93cf771be5c253d07b9b155de
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/loki-canary@sha256:03a47531ce59331830859148033b89b0d65340430d4623393210a09195058605
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/loki-canary@sha256:55425bbd0e776a20f082ce9d68a2d8ddee3b98644950c37e8a59434342f9671f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/loki-canary@sha256:7b2796841b6d42fab93fe9f8f1c76ebf94490549162ca8ab501614b527bab575
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/loki-canary@sha256:d044f14166154968005152b560fd820d576417d11e7e043101ec80e6ece95cbd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/loki-canary@sha256:1ceb82f72cfcccce6c0d9eedb62403d648c5d3c43aab2f8bb37be01d0b785fcf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/loki-canary@sha256:2a77522654de195c6b3fe764e2f4ba519c85c185739f4cf0f7f6072a62ecfe38
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/loki-canary@sha256:619fc7c432c6c10b23001dcb2e7610d888b67465ec00594ef623237fa017284d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/loki-canary@sha256:f669d99e8dc491e1da7c2e274f651daebd76d235eca7ef93ee8fb15e113258a8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/loki-canary@sha256:8fc0dc06f3d6e590874107728cae9ba1ab594686c54c8cfdf61be5163ac3a8aa
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/loki-canary@sha256:1c21b93e8e596c4a2186c5f61782e7b429cb6b26a1f40608f45a4539b71afc76
SPDX SBOMhttps://spdx.dev/Documentdhi.io/loki-canary@sha256:8dd75ac25b4e3586c5a44e3759b4b81d22fa0e7141336e83108aa25c6361edf6