Sign inSign up
Tempo Query

dhi.io/tempo-query

Tempo Query 2.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.10, 2.10-debian, 2.10-debian13, 2.10.8, 2.10.8-debian, 2.10.8-debian13

Index digest:

sha256:128241097c81d2b7be70c45b4f9e1924d15451bc056f0f745154c0463e6e7548

Manifest digest:

sha256:39f9910796c2d24aab4924ad01bcae0e2b09b9d31d64448a606d09812937422f

Size

6.97 MB

Last pushed

11 hours ago

Vulnerabilities

2
8
0
0
3

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tempo-query:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tempo-query:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tempo-query@sha256:8d3736dc2b432d31619057ae2596cb107a49e7396508eeb8a00c879fbdc18a6f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tempo-query@sha256:8b2ea175cbaf6b62bc8cadc80d4a4d92fc25628d3181f4f17bc911123febd220
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tempo-query@sha256:9f857c459b924b3d511473ff69765de7081d15bbaf0888288c1c7908b83365b2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tempo-query@sha256:393a86c99208d4620e6012dbf3d21670a7e9aa2794d96d97a7f6f37c4bf2a6dc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tempo-query@sha256:6b6fc4cef7dee5c33cf9b595280d73331d7902ed5570e6497251c3ab41d3fa1c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tempo-query@sha256:d97235ac31b7c11259331849f6e820a3bd84c76df1fe25f71cfdbe1b764332c2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tempo-query@sha256:9017fe6f9c2e8fbc1993f23778f906e21ed2d11891efcab244506dc64b30ac74
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tempo-query@sha256:b52c71e72347fcca803ed4ba3826bdaf32baf001a574ea50ebf8f299c1e3edca
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tempo-query@sha256:5c250c1d050f3dbfd183a05704283f9ec7394514d4aec479e8298ec90ed43d44
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tempo-query@sha256:6884dafba97361dc3f557727df07493adfb26dcf17b183402094882207df9d37
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tempo-query@sha256:7dfebc3b2c912d0bb0f4a3cc9413c6b282283f08ca7c7ee7919856bd4a76529b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tempo-query@sha256:991bf5c7f0b1f93043cf534c7d436e763a24b466e5e2f30dee4c83ce2df6e721
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tempo-query@sha256:833f5bee0fef0807a4ce4b269be39d1a2dedbb9c324efae3b0eae06e10f74e86
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tempo-query@sha256:973b1b211eb489cf32aa28224d03fdbafc081ff43b0be2603ffde8876fcaaf7f