dhi.io/node-exporter
1-alpine-dev, 1-alpine3.24-dev, 1.12-alpine-dev, 1.12-alpine3.24-dev, 1.12.1-alpine-dev, 1.12.1-alpine3.24-dev
sha256:2be75c20e538244d1c2ffb832cda985c10cfdd6ddea63a205b61b131ea55794b
Manifest digest:sha256:70aed28aee2180087b0e70c3dd51ba20d43497352dd261c32855d37cbc1d173c
Size
14.79 MB
Last pushed
6 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/node-exporter:1-alpine-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/node-exporter:1-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/node-exporter@sha256:a7700c53476e0817f88292c93d0c38aabd85b4de843783d149e51fa2e62f1bc8 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/node-exporter@sha256:02bf4a33d1ea2db10e1fefa9bc214698c926c13e3371acef221dc07299917c25 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/node-exporter@sha256:c3eb84d21a1896982c3a962ea52d17377eb423a66490255227d26b642a8cc109 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/node-exporter@sha256:3d7f9419ef62dda157c207986fa1891906c14f69853cf353b7babd4b8c05563d |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/node-exporter@sha256:004be5a3749f91e5cfa619222e9328f451722a2a9fb95e195db260eee954c5a5 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/node-exporter@sha256:d69bcea4bb92774bf7713504b91861eb4abf00b440324ed8c8171213fad87b4c |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/node-exporter@sha256:4e665761b578c2bb6d2b938c178cffba5befdb1f4bea25e2f7eb53891733df3a |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/node-exporter@sha256:07f40cdb871b7faa1da8ef02b441c90410148afcb81a8f25b3b7a71588508794 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/node-exporter@sha256:8d880490285285fa503c1d47d139de7d0a980d9ba4515c628bdd174b9a44f7a8 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/node-exporter@sha256:b46310803abd8a559419a68cee86d700b6653e31b04ddddbedd679aac9c74ed0 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/node-exporter@sha256:5ce4d1714b99634f738eb8726639c6d036ad191b22456ea8d5f7cf13b3b1cb1e |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/node-exporter@sha256:56f64c37d3105b4928597aab2891b8f20cb72f5b0b666f1e4d1c378cf057a8aa |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/node-exporter@sha256:872ee2bc978ef63b19f9e7554b1fa3463ab6ed54a69217c578773f4e68e7a401 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/node-exporter@sha256:d7a4246d13dd6ddc064a24a2af0fbe242819dc2a68356cb432cded3587096347 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/node-exporter@sha256:a5cc493e242c622b21ca560476b6966b959a2f06f0d61fd000adfa3d0f7c660c |