Sign inSign up
OpenTelemetry Operator

dhi.io/opentelemetry-operator

opentelemetry-operator 0.x

CIS
linux/amd64
debian 13
Tags:

0, 0-debian, 0-debian13, 0.160, 0.160-debian, 0.160-debian13, 0.160.0, 0.160.0-debian, 0.160.0-debian13

Index digest:

sha256:f24b921c3d88ce445f1395eaa85286b128eceb2b00b3087202ae39ec6dc7809d

Manifest digest:

sha256:9b58ef714952f0b4e0b246a54f24a1c3e5c1037bc5525330d59d1d282729a79e

Size

18.62 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/opentelemetry-operator:0

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/opentelemetry-operator:0 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/opentelemetry-operator@sha256:6413d064fc13dc7dcfc94fd1605d2912e666c253e4d433af9e8b215c215917b3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/opentelemetry-operator@sha256:2d99a68ec624dd720daf789e2d1eeff9d3d530490afb55435047d6b821545833
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/opentelemetry-operator@sha256:8408d1b5cdab0604b2939c00334b3dcf22a358d9aa247ee0562667bf287aac2b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/opentelemetry-operator@sha256:ca393febe042d23705d9081770331a36909d0e92b2d2b59614d143c3230fe4a4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/opentelemetry-operator@sha256:802f482123c7068b66790a8c766703c8e76257c86ab335748fbbeec08011c1a2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/opentelemetry-operator@sha256:f2c2363436360dc9a2232c56b355bc64b1600794e247b7ef92c3d77b78bfe4dd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/opentelemetry-operator@sha256:5c6dbe3d7013a938adbb7c0f2f661746e74af4e3e98bf117493f6f35d0008d84
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/opentelemetry-operator@sha256:ec0810f9f570b1e55fa5b47f354822c27abae4fd9be039825fbf53ce3462f962
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/opentelemetry-operator@sha256:53c1d801e716eacb01032462d678b736795eb95aec2b97326f578e2c1b4254e1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/opentelemetry-operator@sha256:7c5193f47de3b013653f37857cd86937b914bc599ab19a3f439df2b875707f94
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/opentelemetry-operator@sha256:ad53ab585abebc32cb80459a67490225b758464014bb2ee5a63fbe0f18d79f6e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/opentelemetry-operator@sha256:624604e98e20e924e38e202b77860078d5ceb42620332a76dbb57b152a982ba0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/opentelemetry-operator@sha256:9b188a63b9121ec06c04963dd3a7dd878d41599861930b44e15e060e4681a643
SPDX SBOMhttps://spdx.dev/Documentdhi.io/opentelemetry-operator@sha256:64e0bfb4cb65b66e89024dbc5deec13dd7c6210c7fe9f478c5be5586c855e441