Sign inSign up
Pyroscope

dhi.io/pyroscope

Pyroscope 1.15.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.15-debian-fips-dev, 1.15-debian13-fips-dev, 1.15-fips-dev, 1.15.3-debian-fips-dev, 1.15.3-debian13-fips-dev, 1.15.3-fips-dev

Index digest:

sha256:41ebcb054aead6883968c78b508d9f51e864e6b2938e34276300429582cfa9f4

Manifest digest:

sha256:244bea3dcffd31af00c3f075940673f4e3ff5de66644b5a754ee7c84ff2cec9a

Size

115.93 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pyroscope:1.15-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pyroscope:1.15-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pyroscope@sha256:eaebb26847d14653715d082cacd1b32e3f41553b35644343f16ad1f6aad15faa
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pyroscope@sha256:a8cd110c12d737988091f2921d19bc72c816d649322bc4b9a4ebdef4bcd039da
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/pyroscope@sha256:fd0d775a7ed8bd2c3606a1725277d947be20c8e68879d731c07442a3416d86a3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pyroscope@sha256:5f58cb7573b309e4f5b98f50de48c458b4a98aaeb9684d8ed1030e000607eabf
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/pyroscope@sha256:02d950e0f9fe31c0fab2d717f45a5f6d917ad173a60cbb5177b42155806ae273
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pyroscope@sha256:be0b7c2bb7b1760d218bd92560fa24a36644673ead962f68e6b1b76a16767452
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pyroscope@sha256:09925c9644948eea4087c8ff462d827b1856c4c63479b9ee38b90f39f853e5d7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pyroscope@sha256:5989473d217d5cdefc1c6076aaaf390f1a7d464a7056cf1d5baa780e320922b9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pyroscope@sha256:20e842cdca3880b64d2e97f23794b6bcf3985f88928d870ed631ce701f3bc6b2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pyroscope@sha256:918b8ea46adce8b916776e9ecc2c97181875f539f7e2c32275dea2f7f75ccdf0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pyroscope@sha256:bfa62f9de683959ccbb74ae22972686146fe0383556829fbe678743c419b1f17
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pyroscope@sha256:bf4b31d306177a6ed4a23a037702c841b1a3e120e6f66ff6a7d14bbe3faa115a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pyroscope@sha256:ecfaad9b565a79db323edfd3fe673044781e8e510be8f4c326eb7e08a26f9482
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pyroscope@sha256:45bbf3eda5fa6c1eb39b1095f6942da71f2c120e8f768c6a0ad0910ca265d050
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pyroscope@sha256:8628a016fbbe5eeb8abf7fdd3719988f0b8e643ef54bf35e2d9c847ee02d30ec
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pyroscope@sha256:d0e166d0e5f2f93d9acff9b9726c10b4b73fc6e274e083579ae2a5643acbe51e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pyroscope@sha256:056aa868b255dbb7fd9a410904b2f4a7da00de688824f43f1c480cd4b2dad995