dhi.io/beyla
3-alpine-dev, 3-alpine3.24-dev, 3.36-alpine-dev, 3.36-alpine3.24-dev, 3.36.0-alpine-dev, 3.36.0-alpine3.24-dev
sha256:de24069c887d828d89b0245287d5804a3b2b33680cb08c5b16e04bee9686294e
Manifest digest:sha256:50e6babd23f53d2186cd323ffdcb6c49708ccc7f6359a3e7f27c923afe682500
Size
51.28 MB
Last pushed
2 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/beyla:3-alpine-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/beyla:3-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/beyla@sha256:d1d495535588b14b84e6d8391506f8c18fd16bb77d357545000ee7947fc388c3 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/beyla@sha256:1973eeb91fd58823f65ffe30a8b26e9881a154e4d7e0fdae5b62b06c99a808c6 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/beyla@sha256:403a36fffe7b589ab4ca61e827c66ba896199872bcb5c22291d3278568cdde16 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/beyla@sha256:88e1bbc7d2a9810555b9cb2710566d1768383b103ea335fc6e66292b5930f0dd |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/beyla@sha256:0b536476a32cbc7e3bb54baaab7adbb4e903868f05c9d6216e30136466e71636 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/beyla@sha256:1b22b85da236369c114bc86ccb97e3e2d322ed820ed2141565c5534c88a51a55 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/beyla@sha256:04af632bb30843ec605437429882677ccdc8eba8b6aa7e8b262f2e8db7c2ef81 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/beyla@sha256:2cb7d5bcc4fc2ee3de2683c33dbb057f5408c8566c0f68dc3b305ee6144daeb6 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/beyla@sha256:29945fa756efe46311173289628e4b25082b447914063872a6bc41a990bb6b3f |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/beyla@sha256:d4466a185786563f5aa7f6fcff96fc1ccb188334a882d8d3d8df8ddff4f05344 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/beyla@sha256:fa5e7570719adb8600c3495f2e56813d1fc637bb98d7ec05725e49cc6c92e130 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/beyla@sha256:b02efa4603caef52ccda60bf7a17700dec0450b24728c6ab6a31ea14aca481de |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/beyla@sha256:06898c704c8f7e5b9e2866651b6c8aa81ba9ee89434e461076272353907d3bf0 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/beyla@sha256:c8308cc8d6150a29909a7749dbd7bfc3d44ac8ceb15455287f37cd1d5f414dde |