Sign inSign up
Pyroscope

dhi.io/pyroscope

Pyroscope 1.21.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.21-debian-fips, 1.21-debian13-fips, 1.21-fips, 1.21.1-debian-fips, 1.21.1-debian13-fips, 1.21.1-fips

Index digest:

sha256:6cab2106211499697e4ef08780d011fdfe5f4f444bd0a9a1107dbeff5fe5e6ac

Manifest digest:

sha256:921bb7e7dc30d1be96a6d3be9a256fc190d96509f7adc6a3ba6189e34d149d88

Size

60.30 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pyroscope:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pyroscope:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pyroscope@sha256:c409b733218455d587bbec3eb17d4c13b1621292a9350d7a0442fa4f9d031b0d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pyroscope@sha256:9ad2e23cabcd8ffddacfc19e68f129f254f81d6a2861c3e1a5eddc2f8ce1599e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/pyroscope@sha256:ffc194465cb398b5c72ebad8b83e87b9dc057d28c98ac59605b8dbc290441230
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pyroscope@sha256:dd54a6769c5038d646645248a9a69b38f471eae804920ace55d4fe7fb28547b9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/pyroscope@sha256:7ba4d60bb34be9056dd852054e2fda5dc02176491ce1931f5c23a0a9d5506cd7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pyroscope@sha256:f7c31b469defd40d9c41629a4946c1b862da0daa54966077234eeab890c1757f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pyroscope@sha256:eccf01b084feae73dc8b473b3512f16ad9870c8a795c6692e133dc2ee0c76681
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pyroscope@sha256:f51d6533d2b9b37ddb2cd4d111693c2a9f794a313ab02f12dbbba87eab013319
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pyroscope@sha256:714c32e4c7b97b11a4a09224a330c7ed1746f884fe8e6d3283c746db0b91dc78
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pyroscope@sha256:4505832bafe1215144e21e48b74664f165dd3ee9a9d16a92615dc09378e7b47b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pyroscope@sha256:25bd755cda96b5db41a03e80d33456da02648f254826ef3c21e6ccde9958ba5d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pyroscope@sha256:b3966393efaa2167fe280f805496893985384d8fb58560d4df9bda9b383294b8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pyroscope@sha256:85180296e1718cb7676b256e3e56a715d5d5b44c1e61d8a50ea6a3d9e58aeb7e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pyroscope@sha256:490628185106c58fe113c013ca522e865671aaa8fbb046bf78d1fd3407374bea
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pyroscope@sha256:52d09b2ea4162bba60676b71e81da96df6aafc3a891a380418e7d2fd529a0856
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pyroscope@sha256:03caf33c0b5c3f0ff2af0e8f1b7ef6fcb699cffbc40ed72165f1fd7bf5ce2e63
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pyroscope@sha256:20cf740344ea83a92d03624d627c3903071a01e7cd704437a2b473decfd25af4