Sign inSign up
Pyroscope

dhi.io/pyroscope

Pyroscope 1.17.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.17-debian-fips, 1.17-debian13-fips, 1.17-fips, 1.17.4-debian-fips, 1.17.4-debian13-fips, 1.17.4-fips

Index digest:

sha256:4eabc5f838c5e421d294808a4eff0bf769178524c62db6c1d09d903fe11e6e7e

Manifest digest:

sha256:ecaeb018861396c2d742e29c8003c47ff94f357574f553ab3455cf0fb4706673

Size

57.00 MB

Last pushed

12 hours ago

Vulnerabilities

0
1
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pyroscope:1.17-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pyroscope:1.17-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pyroscope@sha256:f640e3fcb6a69a204bba3882a12c34e8125fec032710f44cb007f5a13ff28bfd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pyroscope@sha256:7830b1c00219661897c45baf883f332c7c24c0f516e87ec9a09629555476e431
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/pyroscope@sha256:5c057d636fa2ffa404e1554a73d060630dff949ce3d2ba2838ba17c21fd56fdd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pyroscope@sha256:d50bd68f1b92bc9f34e4b5607f2366171f9c5b2e84bc95e90f7e606107c4c2be
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/pyroscope@sha256:7275a30184eab18fb2ee01a231707a06132c0334248b8781a0b2279112cbe0d6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pyroscope@sha256:68e94be20ff7acc444ffe6676c4c0836abb0b5e43349a0ee48183935e4a57730
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pyroscope@sha256:17c9e90eeb806299dea1fdefa541c2b72ce51c0fc16e3922f0007d043ca9385d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pyroscope@sha256:ba5d7d2a06d3f84bff6ab26e25beb3b69bc4477a5eff63c4305b8a392b984193
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pyroscope@sha256:758c757a277a9a12a7e61c0612d806551dfe40055cde9845baf376cb65c131ea
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pyroscope@sha256:e4728b16ec1657f57b2ad12325878ccee44eb4c6491a0afb88ad26f68b399cae
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pyroscope@sha256:254de3d8f0fb89b473df7d133ff28ca6431ce3efcda7262d8964ee640a353865
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pyroscope@sha256:36fa21d7b5c91a265b3bf11de4a5b1452b252901478d49dd5d86fd1b092d0b61
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pyroscope@sha256:b3045f89408b0ad521e0369da865914807def30b3d64a68ecbd5b2a3db20ef0e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pyroscope@sha256:208fcdd009429b1ac90c32037e4dd7819ca21cf1dad05af0cca859f0cc99a483
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pyroscope@sha256:66ed6530ef828bd0b349aef06f588d74915c165d660f6baea6b08351a2abef61
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pyroscope@sha256:01b3d233e438583361c17458535f7e8f5f9d331cbe8d79096a66ac47bff9dd75
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pyroscope@sha256:81ae4021ae9433ae38c00055c5473791a1066d2621a237f7d2128b800f2e1e39