Sign inSign up
Pyroscope

dhi.io/pyroscope

Pyroscope 1.15.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.15-debian-fips-dev, 1.15-debian13-fips-dev, 1.15-fips-dev, 1.15.3-debian-fips-dev, 1.15.3-debian13-fips-dev, 1.15.3-fips-dev

Index digest:

sha256:6e52d6894efee8c8159be822bf33947bddfca30cfea7836b0057d476c3bbd8dd

Manifest digest:

sha256:6c671c39ae8bf7e5d229233163118ba940df593e8f8af75d89ea8714deb22ef5

Size

115.99 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pyroscope:1.15-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pyroscope:1.15-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pyroscope@sha256:2d7df5e9047fd5061e21e1bf07afcfaca5771249ab27451a520ca987ceedcf05
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pyroscope@sha256:e91d61edcd6f71b504b0d84032cef872ebb1930dd8a1260ae1c6a9d0c4c2efc1
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/pyroscope@sha256:4c156c0df5634a99436e1ad92e1004275427ee468d6d9be8fcacd18bb7d3b1e9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pyroscope@sha256:a83f0cdab02bc857bae582210ad62951721a96cfa45cf8029c0399a503181afd
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/pyroscope@sha256:58e852182c72e7d418b26064327a5af8a281d29303c8a78d0ffe40083b733a2f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pyroscope@sha256:14b1309aff3e7c5b1277a564d5306954e60bc2bb909286dee1d4f494ebdb0aca
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pyroscope@sha256:bc273c3159f5ead18861fbddce8aada2c1f567781c3996016796f15ef2bd34b2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pyroscope@sha256:085a8284d65807a891192cbb8cf7c4b979f871add39746762e809775480d0971
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pyroscope@sha256:ab3d9da8639a3cce00124619b501c473b8f6d64da2200bcac41c7eef817c9be6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pyroscope@sha256:48bea8310c4c22b12ccb762f16cde08a2f5eb584581098e37a9d679fca4a72f3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pyroscope@sha256:7f9873af4587985312bfa1662c84fd69d2974a47f82548caade174634fd55e62
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pyroscope@sha256:ab74cd5917904773033e6d19c0b49eff37afb96c67988b353fabae9bc7a6b299
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pyroscope@sha256:6a44e99e8cfd4afad13eb3b04f2d45b4c9248ebf2104a27cfd05c1070d92a860
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pyroscope@sha256:036e8cf1b62735aed8723a29615c1443d0d01c541c4e65a3c8f32078d7e8a4ad
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pyroscope@sha256:b2ece9e84200e76cf353bcc73e5b43dedcd76fbeee1de132b554cd4222a000d3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pyroscope@sha256:10885f7c90902487c213783bd44bab9effbde327e09019f4595c300d6204a9d7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pyroscope@sha256:411e1ec4d99915702884bfa52a79eb18b7730130e266656f5898cda65aea4aa5