Sign inSign up
Tempo Query

dhi.io/tempo-query

Tempo Query 3.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.0, 3.0-debian, 3.0-debian13, 3.0.3, 3.0.3-debian, 3.0.3-debian13

Index digest:

sha256:537d23a69f62fc122d3a8005fd7e90b7fccdd1d2c5b2255fc92b904213a6bce7

Manifest digest:

sha256:7cae4d7f1ff26acdbe64fe75241039bf19a052493a3530d30749b653cfb2e624

Size

6.93 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tempo-query:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tempo-query:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tempo-query@sha256:33683147d3339a73a19f288a0078d16d37cc1723f3e35e7bded082eddf731c7e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tempo-query@sha256:7a8b6cd9ae85c31f3baf8b79248d15da5cbb438f5bfd4a7276ca5248f84d3b47
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tempo-query@sha256:75e821fe77c7748508bfa75f79bb3e05c3e1030e788a38edd0ebdf02f4536e6e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tempo-query@sha256:ec8156a1f9bc0eea191aada5d333fd9b554a1f211ff01db133b78e174cfb28fb
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tempo-query@sha256:bc28686d8c41b2e3ab4d331f03002c11a935b7f5d4aed94759147a7a8ba1ec66
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tempo-query@sha256:53cd00d04d0e5c105b5593ba9d11d710be851c18aa870811f505242b1716f053
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tempo-query@sha256:0082b6bd2bce95f572952b503c676c78d3cd8ebe505eae3392735f2e6af5a52f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tempo-query@sha256:3cdd74f5bc3ba038c1b9b3db5cf6a20469cd0684f3cf0b8246b43a91e4ed4c8d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tempo-query@sha256:87a8364cceef210d7af913a5999b9ee047ae99b691b8de0d0bf3d6e73c546393
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tempo-query@sha256:39d0804ed90e49c48434525fb47b0c736cb9fff73ea94f15460b5446c563a62d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tempo-query@sha256:98e9b7c3ce3540f76d49ec540c39bd7b115500d0b635fc61cab2e4208803c55a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tempo-query@sha256:f195fe1eaebd06337f9a49d2aae723f9c99a42d775e8c484a21cdc5e7a85268b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tempo-query@sha256:7c2338b53d9c3b30844cc1482ab1e022f746a33ad7d1581bb5a42a6216062e89
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tempo-query@sha256:8ab80b3775c2b5246507fee4d8057ecfc1d0d9f749d9cc1238463f6d8c60ee93