Sign inSign up
Tempo Query

dhi.io/tempo-query

Tempo Query 2.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

2-debian-fips-dev, 2-debian13-fips-dev, 2-fips-dev, 2.10-debian-fips-dev, 2.10-debian13-fips-dev, 2.10-fips-dev, 2.10.8-debian-fips-dev, 2.10.8-debian13-fips-dev, 2.10.8-fips-dev

Index digest:

sha256:d542d4d6adaa33263d847b2b82f49890f5bc8656edee998b5c921addf014eb00

Manifest digest:

sha256:15fbbcab1d2d837c6aa15e5cf425223e4028d4b74ca40da0b5022eabe791c4de

Size

36.30 MB

Last pushed

24 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tempo-query:2-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tempo-query:2-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tempo-query@sha256:2e6069070d89ce7b80d848fe5084d8993ff4d3bc6ddfe5cf3ca79a1a2f6b0b26
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tempo-query@sha256:f6abba60233b7231e0b4fd644193e33011ab66d849a7c10308124d6b8d208125
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/tempo-query@sha256:df117675ea8cfc7230a9e199d28e6d32f184324d5088d46df75b0992f228766c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tempo-query@sha256:f89ef39c6396661b6f754245e00061ce9c6c8cafbd8d50d53d6c255a97d87d41
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/tempo-query@sha256:3424dfc7140744cac18814aafc69d1f74a5c36bcd96f7913b097856a23e3b975
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tempo-query@sha256:d42bb3a25effbf34c0909d5d60993d5cc7154fb8b3182806223eb70018be3443
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tempo-query@sha256:dad4b2df17fe422b6c3efc2634cbd55799a1420f86c15cbb1e92c22cab9ea5af
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tempo-query@sha256:6f7070c69d92002426e35c355c1f9bc72ffe3c94cad0c81a15dbe00f84d4e8cd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tempo-query@sha256:4b5d26e355b08d33953bd46c7574b26916a228e6490a30c80fad44a14f2c0e27
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tempo-query@sha256:684ffc3bbf80f7ae16d79983f10d36fe5a5fa473a8027a0577a711bd79ad88ff
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tempo-query@sha256:4e9495d390bde96bc12887743e2afad4a8e8d9577b479ee908eb48ef5bf00266
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tempo-query@sha256:7c25af13fd9156bf796bac3b31dadf803400655f761e6ad8616eba625562f3fa
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tempo-query@sha256:b791637e549a89a6be4700efd07fed5b59fde17169ce8a066d4d0e51700cca57
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tempo-query@sha256:f4eb57a121a5db141eea81c62a8d72c4226cbffbfe8491c29c78f6289ee63b8e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tempo-query@sha256:fc0f01610a004e6585321160a53dc2866b29d150bf399c53960b76f0ee8486cc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tempo-query@sha256:f4f26af8baf0dc58473c458ac77a87ce6797986db6358d17f29eb94ba4b2531e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tempo-query@sha256:b3b2a74afd59a6011094f1c176573ae4e20eface2ac611dc1aced54af939506c