Sign inSign up
Tempo Query

dhi.io/tempo-query

Tempo Query 3.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.1-debian-dev, 3.1-debian13-dev, 3.1-dev, 3.1.0-debian-dev, 3.1.0-debian13-dev, 3.1.0-dev

Index digest:

sha256:402de6448a8053c9aed54c08881fd71883961ee9794dd223b41739d29d57736b

Manifest digest:

sha256:426150fb786c937060530f53485dfe7237818e7ef96f95145173589025f093fa

Size

36.46 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tempo-query:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tempo-query:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tempo-query@sha256:3e677446f54e8af00a0673e0cd786a6caa8168943eb9239f68929b49a988e473
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tempo-query@sha256:cfe601b61190a09967f77708fb507b3c52a39d79a8a70873361c7fe9d6bd3eed
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tempo-query@sha256:7a6ddae6df7393b6b2ad43d25c864b72752283a80422843747423853b6c1bb13
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tempo-query@sha256:a2788a8014e669518698d482f087e44a58ef80345360dfbaf18fbd8933b37d9b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tempo-query@sha256:3f434ca456f5a4dbce9c417036b873911a8a81fd537cf61b0e44e21afd2d3100
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tempo-query@sha256:2ef5fb6ee32ece173e3aa3f58fbd1af5d2b13bdd99ce6c65daa5052b3d4b95d4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tempo-query@sha256:a1b48cbeeaca0124ba8374f4d28a0aa65cee2c1bc6283713ce979c24fc264c68
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tempo-query@sha256:e6dc25dcc80888724f60394bc4ce3dbc96b4ca0dba54b5912ba7cc0be4faac43
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tempo-query@sha256:6742239328c0b8f03da61dd4cc6452a34fc580cb182a8ab2cd9e1b249f346915
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tempo-query@sha256:8cb3896735ec3f3003e6b092caffebe0ccefe71d3e14c494de1901a51d851429
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tempo-query@sha256:46cc71d7c8139996d1f1ad241175b1f2f1be43cae38a32e986c325cccdd59f90
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tempo-query@sha256:9888a8d93a172419a47f0df090c707f2d97a9916a3dacc5bdc0ebb4f48a91194
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tempo-query@sha256:7d6ca5af7c1c10e2a56ded5ae6e7bbbb8f0d81d41c0122abe3a4d182a5545f0f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tempo-query@sha256:8dc7a11d1a40ef47041dc7bcdf21645b8d9099dfff8c16f8e805c44e1cddebef
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tempo-query@sha256:9931df2d6d811e81928fa9dc118d8263275522824bdedaedb93bc1363bf09a24