Sign inSign up
Pyroscope

dhi.io/pyroscope

Pyroscope 1.16.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.16-debian-fips, 1.16-debian13-fips, 1.16-fips, 1.16.2-debian-fips, 1.16.2-debian13-fips, 1.16.2-fips

Index digest:

sha256:55261f044797d6c367589b8434bdfda35a6bda5345e41d55ecc9595c4ceae3ab

Manifest digest:

sha256:1d091aef96ab33fae30fb9bc6e788b21ca7be740ab5d3adaef59225c30f4ed66

Size

56.43 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pyroscope:1.16-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pyroscope:1.16-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pyroscope@sha256:43a2da4eae7410249d4f9ca11efbb0a4f26e3ca4d09adb7541ee60207420148a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pyroscope@sha256:76ad6ddb278530b48ea35c791da2be0338ac2ccdd0829c9c0cb87c0b0694652d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/pyroscope@sha256:b8cb2e36ada7e920c446225cb78be2c2db40a9f397c08c945dea0e2d8f670f3e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pyroscope@sha256:f3e87e21ddeafbcc9344149c9b7e1451a139bfba1761170de0f1f3f8eeb4d738
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/pyroscope@sha256:73f288fdbff5bd8555111de77fc6b10bf0fda8a667edad0330a6cc633f8e7b2d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pyroscope@sha256:b71bfbf2192c11d89a6369b09451100bc3bffe980a133be0846a7bc14055c0cf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pyroscope@sha256:3acf530ba57d43f91101df58496fc0232ba82062fe968da0647ff9034795046f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pyroscope@sha256:154860bbfec0bf2b4d4e4095f9a1653c025d2f42704f223fd1cbc81bf5270dfe
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pyroscope@sha256:b4a66dd9060e777147410dea753fa2e43d11a4df69ff2b2eedccf1d7cb6faa8a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pyroscope@sha256:0a7dc4e99cd2b4b541fb69ead3e269cfa4be44725569eb73d38b2e6ab9b7d849
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pyroscope@sha256:0c51869b82b75185ab88672d3d8a7a71c4187edfd894cbecdb9db30d0aebce47
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pyroscope@sha256:4b41ea6fbb6e4a837806b119e988e29393efeb101e4b76fb26bec1f544992a31
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pyroscope@sha256:b3554c66d7dd80ca69a561cd4aefe27b44206a155d770ac909df88d32ac72c33
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pyroscope@sha256:f19cabaa7a789b0c4b784f559d2edb2da5e6baedc98c9d53ac011a6397424417
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pyroscope@sha256:451728f7b68e224d6460c8ea75e7e0283f31bf3321d8d244b20161d496f3db9f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pyroscope@sha256:d6c2022a9ee2ae28fda079bf9671d6e6742fb5b89dc68a06205cc76a1d14c1ce
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pyroscope@sha256:8a5715413becd84ef0bf4cc14e46c944d89b5e67557a6255018738fbeb304406