Sign inSign up
Prometheus Operator

dhi.io/prometheus-operator

Prometheus Operator 0.x (dev)

CIS
linux/amd64
debian 13
Tags:

0-debian-dev, 0-debian13-dev, 0-dev, 0.94-debian-dev, 0.94-debian13-dev, 0.94-dev, 0.94.1-debian-dev, 0.94.1-debian13-dev, 0.94.1-dev

Index digest:

sha256:8173afcb3edd6dc1bd4e3870284e7ab376ae460f42f3971ac29946b181bc2c29

Manifest digest:

sha256:6f31c08dbe52bb6fb7ee16b3360ca9f684162957bcd86d5ca6ac966f49e672a4

Size

59.00 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/prometheus-operator:0-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/prometheus-operator:0-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/prometheus-operator@sha256:a10108cc18e99cd974b87c2b982fc7d1c00a8e85296a91f5c7b5b7439aaad06d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/prometheus-operator@sha256:03bb7014edaa63327978eafed833457f5850316be8adf1f133b6a83b75a578c2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/prometheus-operator@sha256:c29154b2a2f30ae3a60ffb5291bdbd45461f7cf3f3e3a494872fac1f1b7e8bb7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/prometheus-operator@sha256:1ba06b3eef4434755c494d59fb7590900557f8cf9d76c0ebec166399fd14ce55
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/prometheus-operator@sha256:a822f8bd6a4593ae0e9f766aaf8a1d495b445453c086294109cb1f59ba921b07
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/prometheus-operator@sha256:8148dc04f42bedecd8d2640938a0501b790c98ad42991e2fc37e247ced80559e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/prometheus-operator@sha256:507e8617e084fed9530010e172a9c2dacb655a0ca16a3b244027761112a29a38
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/prometheus-operator@sha256:410680e7f55b3323116cdc023d952cf8d6a2b0bcf86abba020c69ce657a393c5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/prometheus-operator@sha256:8744e5f892c5e3ff0368f041e8c05bc25ac8b0a3a1940898cc50e52216c00caf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/prometheus-operator@sha256:81176a394db9c35ccfe0a3c13403a14fc4f3bfd369b62ababa9090b323a295eb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/prometheus-operator@sha256:5a33ae33a974dd44f5adde14ecf53356b0986313d567f2cc68448a3997e09ccd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/prometheus-operator@sha256:c0f4f0b246e8ce0b39eb5b5a5c26a63b9cd17c75205ca8f06a99e6d116f1176a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/prometheus-operator@sha256:1f09e19715c92d7f1b63cc7abda77a0bd43104836e19d8a81ccae93c40e4a9a6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/prometheus-operator@sha256:b30dad7dd3f46f566f0f95f52201c434c8f2b253ae7964085b23a3b29b0c3455
SPDX SBOMhttps://spdx.dev/Documentdhi.io/prometheus-operator@sha256:49352f754b718c172bc1a8360201ed99fbe043a96427fdb315d27643b196cc33