Sign inSign up
k6

dhi.io/k6

Grafana k6 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.8, 1.8-debian, 1.8-debian13, 1.8.1, 1.8.1-debian, 1.8.1-debian13

Index digest:

sha256:30969e555f482163e877d745f55e51246fddd17225d246774d33b43803fd4299

Manifest digest:

sha256:0c6fe04fb8c475c7b85b635d9fc4bf44e0606d6e3c3325129a4984e974397df4

Size

16.58 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k6:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k6:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k6@sha256:bdfdf043e316fd6b3423186273f3595ff026e3af2d01280fa0b084d0b30ae5ff
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k6@sha256:d26c5baa9829359b84a5c9d2a1bcd46e17c3b27902f9c17e8460b2d422e0a7cd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k6@sha256:a7a17241b32fe94885d57dc422a81d10bf31fe0259c612803af776ca001f628d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k6@sha256:58e8cc0787ee4d31c9945530da81101b6eb071095ef1f824078ae7fb81762f5e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k6@sha256:e689073f3435bd611770ac9f393245dcd3f10757c9f41473caecc1966c0cdd0b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k6@sha256:95997e4961f2571010f97d298601d976f9b4ffb1e3d0ab36e64a4a0b48c6e0ba
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k6@sha256:bf8ff0e03aa58c7a35d637eaf523432475f041f4f0c0d077c8d6b409fa893d58
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k6@sha256:403e3e4895306503a36bc916c9521dcdf7eebb74c2f5f7fe3ac91a5a2afbb2c1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k6@sha256:23fed525e39078941541b38b706b22d2d2994873f85cfaf95469f5e63f2d3f04
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k6@sha256:21c665764cf7413f7d0fae3a3affbd23ebbe2196fba1eff7edf70f6857d553bc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k6@sha256:15b9be96b9c616307505a98b96e2ce2ee3ceb380467242f152e5d528476931b5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k6@sha256:652109758f0c6746152980a9e456b45aa563ddcb0e8eafd875981089ff196c51
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k6@sha256:b8326bb95279748928080b0687a3679bfd5348ea4a73ec9905bde61648733030
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k6@sha256:e95d9000ede1461d54413f5a14fc3b596fa1055db5347ea1a9e03013d0740f40
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k6@sha256:7e5dca038a371c2d4b092be79a532d8745ee351cf0aa416e4819859d38a9e484