Sign inSign up
Grafana Beyla

dhi.io/beyla

Grafana Beyla 3.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

3-alpine-dev, 3-alpine3.24-dev, 3.36-alpine-dev, 3.36-alpine3.24-dev, 3.36.0-alpine-dev, 3.36.0-alpine3.24-dev

Index digest:

sha256:de24069c887d828d89b0245287d5804a3b2b33680cb08c5b16e04bee9686294e

Manifest digest:

sha256:50e6babd23f53d2186cd323ffdcb6c49708ccc7f6359a3e7f27c923afe682500

Size

51.28 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/beyla:3-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/beyla:3-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/beyla@sha256:d1d495535588b14b84e6d8391506f8c18fd16bb77d357545000ee7947fc388c3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/beyla@sha256:1973eeb91fd58823f65ffe30a8b26e9881a154e4d7e0fdae5b62b06c99a808c6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/beyla@sha256:403a36fffe7b589ab4ca61e827c66ba896199872bcb5c22291d3278568cdde16
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/beyla@sha256:88e1bbc7d2a9810555b9cb2710566d1768383b103ea335fc6e66292b5930f0dd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/beyla@sha256:0b536476a32cbc7e3bb54baaab7adbb4e903868f05c9d6216e30136466e71636
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/beyla@sha256:1b22b85da236369c114bc86ccb97e3e2d322ed820ed2141565c5534c88a51a55
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/beyla@sha256:04af632bb30843ec605437429882677ccdc8eba8b6aa7e8b262f2e8db7c2ef81
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/beyla@sha256:2cb7d5bcc4fc2ee3de2683c33dbb057f5408c8566c0f68dc3b305ee6144daeb6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/beyla@sha256:29945fa756efe46311173289628e4b25082b447914063872a6bc41a990bb6b3f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/beyla@sha256:d4466a185786563f5aa7f6fcff96fc1ccb188334a882d8d3d8df8ddff4f05344
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/beyla@sha256:fa5e7570719adb8600c3495f2e56813d1fc637bb98d7ec05725e49cc6c92e130
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/beyla@sha256:b02efa4603caef52ccda60bf7a17700dec0450b24728c6ab6a31ea14aca481de
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/beyla@sha256:06898c704c8f7e5b9e2866651b6c8aa81ba9ee89434e461076272353907d3bf0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/beyla@sha256:c8308cc8d6150a29909a7749dbd7bfc3d44ac8ceb15455287f37cd1d5f414dde