Sign inSign up
Pyroscope

dhi.io/pyroscope

Pyroscope 1.15.x (dev)

CIS
linux/amd64
debian 13
Tags:

1.15-debian-dev, 1.15-debian13-dev, 1.15-dev, 1.15.3-debian-dev, 1.15.3-debian13-dev, 1.15.3-dev

Index digest:

sha256:4a8b7ee0459106b04fb8d425b90f62f2738b912b72ce0e2ff2fb76a7848c3e9d

Manifest digest:

sha256:ae51e6ffe5121acf51300ee3a3af76d15f19c450a5dee7a7d4df8dbd714ad840

Size

114.65 MB

Last pushed

24 hours ago

Vulnerabilities

0
1
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pyroscope:1.15-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pyroscope:1.15-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pyroscope@sha256:19863cf799f88fc978a7afa01a62cd90e2c7847109ee4f84c54ca25936b061b9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pyroscope@sha256:19bf1538218814ac1c46d2e884e63b594c58ef7dff9eabf375ad30a2b2822611
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pyroscope@sha256:70f2616f4629dc92bcc26be261c3d83de78ccb5cf37eedae4af8bdcf0b7dd184
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pyroscope@sha256:7689da1f297fbeb94ad118ec99444bc3aeea62121e625ee98f5b716e5f253ca6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pyroscope@sha256:0a77f7a030f8113ea83aeeb9a1b0af930b20e6e4108b9683fb543639d17a8570
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pyroscope@sha256:df03d2251720b9818e05732e2f130e4b5cdd89b32ca85b1573e33aee8a7c6922
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pyroscope@sha256:059dd46e6682cd0535017d9560e72bbf14529b83eeec521ee0399e09033b4f6e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pyroscope@sha256:9a958c60efe3d01c91e12e717f0c1d2d393d128212ae150d50f1bd74c00265e2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pyroscope@sha256:bce1445a205ce58509a2813682c1e8eb2aadfa0886f5d81da9ad1b76af174de8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pyroscope@sha256:2ee205dec28a58c5ad9ff3c8874587b5d3975217a49271cfa1b649c66e45318e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pyroscope@sha256:700246f81e27309dc9cbf9dcd764c1c24a00731f3bc8389f3cb260e828dd9b38
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pyroscope@sha256:eb7e4e6fbc6511ba15c43f26a22735cb0cd3d6773e8577fc5631fde28477986f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pyroscope@sha256:d6dd311a6ec41445c8a221c2bf3e410eebc3790c0a372ce7c65c12919b65e137
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pyroscope@sha256:0966828d1fbbe118941557664b1708ddeb1f836610487fb00c2e058ffd80a380
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pyroscope@sha256:11ab94e9d0efad62a206c99acdc73ddd766759bf115d590168233bf0f60f05a5