Sign inSign up
k6

dhi.io/k6

Grafana k6 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.8-debian-fips-dev, 1.8-debian13-fips-dev, 1.8-fips-dev, 1.8.1-debian-fips-dev, 1.8.1-debian13-fips-dev, 1.8.1-fips-dev

Index digest:

sha256:5ab083245fc2b0a7e45e9278f0e4d3b07a2e3a629bee396fbdf0ec259ddfd736

Manifest digest:

sha256:e15d9e5e5856f558203fc3b14047d6a593163886a04b59920c2c0297cdb909a3

Size

53.57 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/k6:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/k6:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/k6@sha256:501bd7b06330c40203319ab48a3903f514f4d074550aeb2fddab05ea9ec957b9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/k6@sha256:a180ea911cff0a57fe1091dcb44bef97d8bc59707b09dc63ec9d87db7f8c4dc6
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/k6@sha256:9e2394326406fed13c6ffb40ec107d75fb5afc2d26c86d556cd789303f02bd5d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/k6@sha256:7598846987db0a26d1e7ff5b535065794648cffff9b20aa781937127664fa6db
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/k6@sha256:6364c5cd54f81b16851ef9cb40dd7b4f124b653ac1500276639346392f5c6b65
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/k6@sha256:24694226a9aefdebdc0419b980172ddf1ce2468821edad5f7e3fd9d61af5996c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/k6@sha256:231275363729ee923311e2ca31673c13dc18cc4ad7696d65dc6fc4a4441e2138
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/k6@sha256:0bb1a570691a4d1abb380b6672d8e74178d32b0d61f13726f57bf6f77f75ccbe
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/k6@sha256:dc9a299fe96b20204b06d57e07e41e6d5d838d04c7ac92a9516439c457755308
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/k6@sha256:ce9d85ede28fc0a6564ad50d9b664ab154fe47986d789c0a606aadde6cce154d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/k6@sha256:03287b1028e46bd37b035c917d9abbdaf3803610b3c226135c7972aca5e11cf3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/k6@sha256:cd9d6af0aad922042f56b5670286c27265cd07147598c5f1e43338752928c3f5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/k6@sha256:06adb80412a8074761861f431d6dd93c9c67e7c8dc5033866c97121c6021866e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/k6@sha256:d744f476c2663ceec98479938dc2e85e734810504c18c45edb66345d913db262
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/k6@sha256:f26e8dc744f09731aaff22c45ee50481cbbb75c3280fb60dddd895c67fb0ab52
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/k6@sha256:d062cf9c66c185b743d1dbe5651fe74f537469cbeaaaf2fe5aff18e126935078
SPDX SBOMhttps://spdx.dev/Documentdhi.io/k6@sha256:0f41dfaa9afcf6d88a92740dff417105a5683e7ad52e67142ad530b876eb3403