Sign inSign up
k6-operator

dhi.io/k6-operator

Grafana k6-operator 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.6-debian-dev, 1.6-debian13-dev, 1.6-dev, 1.6.0-debian-dev, 1.6.0-debian13-dev, 1.6.0-dev

Index digest:

sha256:3adc2ea498c09ad3004a3831a1f7ba183c6b82e4e0a8a1a376fc7c03909e932c

Manifest digest:

sha256:9a63155d983c31d06cf89adc98643d11482fde952b16c1d44b01d5fb153e3b59

Size

48.58 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k6-operator:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k6-operator:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k6-operator@sha256:3557154f703a6508f85ec839c39e323bc4d3cae8090ba0c12c852f8d391aaf7d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k6-operator@sha256:4e2996bfb3c04230cd8ea94b8e3650ca3bd9b717862586c01045b3d598c5986c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k6-operator@sha256:4073e434f55278a4a872b20572e430045f882e783881f7a8bd3852055fd62128
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k6-operator@sha256:06d9298cc2bd4defc57a022f3c1e2a5d8ad9a38fd38305e2b47861e535e51530
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k6-operator@sha256:59eb391a81642859aed4e4c2917c7aa27291a2e8efa70e368b54913c7f904733
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k6-operator@sha256:9546d8b061c33367ce1f7b0bc5aa1dea6dc13f4ad1eab142b4cae3ed6188ea0b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k6-operator@sha256:d7b53f768feba989fc8b8b99bb17df814de41d318c1d83dc139b69fbc67e6428
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k6-operator@sha256:7ad63ad40731b7e1e4914389dfa5263c32099babe539347e9e11514db6952fbd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k6-operator@sha256:79dfa4406e80d02be8bed9debf2636928cb29aaeeac50197976d77fe247389df
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k6-operator@sha256:77580307f7a05add9ea24331553694b6ccfaccd066b1b3a3b4d6e6123ea22873
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k6-operator@sha256:c1648e931e00b40c335c07e8fe7bc9da224c8bd01cc423ef5753d9da216797e0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k6-operator@sha256:fed1df7557d94a71a70c3828da466ab4e9ee41d2e52b724eabee39a2375791e3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k6-operator@sha256:b6262568cf179aaa1133aa690c091f4f48df20220a13c7418f7a4305ed0dc23f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k6-operator@sha256:273091f5b2da01b3f8647ce4789bfd56e41d51935df8d401dcd4b293b482a845
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k6-operator@sha256:cd33e9ef0a5cbcd9d7ac528db1ec80847ce3b0b453bb3a61b31adfc358488a7b