Sign inSign up
Tempo Query

dhi.io/tempo-query

Tempo Query 2.x (dev)

CIS
linux/amd64
debian 13
Tags:

2-debian-dev, 2-debian13-dev, 2-dev, 2.10-debian-dev, 2.10-debian13-dev, 2.10-dev, 2.10.8-debian-dev, 2.10.8-debian13-dev, 2.10.8-dev

Index digest:

sha256:dda35c2fa5c9f918155ef81c0256f9d3a74cd769b6dd7ab9277987c43c9985fd

Manifest digest:

sha256:3546ed6a9d2159aea42baefd4f7ffe7434dd1ae1a549a8233f7e7d88faab6c12

Size

35.54 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tempo-query:2-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tempo-query:2-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tempo-query@sha256:916d53a1fb6067713e3aa485f090af6a49d06efc78284326a0a79ddfbd69d608
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tempo-query@sha256:d66cd5ff76700b8b71ef7ec736236afaa842091fb0bb1a6faf0ede726b48b2a8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tempo-query@sha256:eda2874d438923ee1d1ae4fdd3e9b24aa7cedd104a03096dd3752ea15cb1510c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tempo-query@sha256:f4233a653a4745c1d75b798a35908992295399c0d63f07066441bb1cbe27bbe1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tempo-query@sha256:58d4d3493e04fcf5545fc5ae3ab2a315e500e53ed5f76fdb72b41cabd4796674
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tempo-query@sha256:beff8a0b32851856865c5fbe8f1f86fd1b814de3e284c2ee0fba3d44827b2243
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tempo-query@sha256:c5c31d219ed26b34bb1e545afc28338c7b1e5e55f6f3ac3c752a0a835f65fef3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tempo-query@sha256:485285421b13e3df2fa9423652a450f08eb4921cb72cd3e7e1c6a28f6be6633b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tempo-query@sha256:0eec5ea07a4da904f1e7f9604da30ee91992cd38f341edfce4a4bbc720c1bf1c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tempo-query@sha256:94f90c2d94825b013a62f56bf2956d5dbb71322d3d10ca346198968865b80553
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tempo-query@sha256:22418dd2433546fb39870309fb9cfadb1b10460e315e3fa5d56a36a8840e9af9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tempo-query@sha256:1c7cfc7b11206fd7dc3cf4e2955b44b3f452132a164152cd153909ee98efffce
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tempo-query@sha256:ad1042fe4501f7ebcf02361edf17c0071afe70df87f72fbf7e6cc9822b5d1e1a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tempo-query@sha256:b1eafc55702a65b01976c870006376a38c8649efed1dd1e08f471e59c0632cbe
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tempo-query@sha256:cbab9f9f4f23a156902c8aa43576a0ad4961b262ccbc55e6ebc9a5471f697243