Sign inSign up
Grafana Loki

dhi.io/loki

Loki 2.9.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.9, 2.9-debian, 2.9-debian13, 2.9.17, 2.9.17-debian, 2.9.17-debian13

Index digest:

sha256:0e69de355aa93ccd623f25850aaeb14c002adac4a347ec0f4e1ee96e037a63aa

Manifest digest:

sha256:df83284cedde1f640d8d75235af037bd095b8741b28b56af79c971cfd202e257

Size

23.52 MB

Last pushed

5 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/loki:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/loki:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/loki@sha256:5f43bfa57f798b0a00a48caeacc896b7011cd63660c4d5a5d0df5ebf97df769a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/loki@sha256:46154a6927aecd02b5a1c063c38c0db5decc678b929574e25b53b9e9c1d1ec15
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/loki@sha256:6f4f4fedeccc82edf2f26542dcb903d0983c285937d90408a3fd118dd1d3ff4d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/loki@sha256:7d0c2861317bec55c672789d96a55ed5ccce9fb44c12ec573b859972b656c30a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/loki@sha256:e17835058f7cbc47d118d7243b8ad43d3a8dd1a4a5bfc97ebd6372f35979e6e0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/loki@sha256:1c03037561b95c1fca0e1045c38665d171dbf92b7f172ecdbe8f957771d5491d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/loki@sha256:b1903f91f5dfd692ebcff40082f9dc9f08c48c9675c8718926f5f0827956e8e3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/loki@sha256:db1228f4429a1d7268060f114b69d4f166d2f7a3592316c99e9c966f2d89db7f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/loki@sha256:9bdb040c1831dabdf244c1f897466623e3df4f8fce93e449d2d66c4a9178550f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/loki@sha256:ef956f873ec2c086323684bb3fe7b85c8e4c84a45f9fb7e8327b9a8b6f4d6952
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/loki@sha256:fb191aef2c2a8432ed66388a57de15630e6c98746ff3c29b0f9e73d8bab075a6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/loki@sha256:36a323f8bde9f8f39d31c25a23399e911d245b61e1f4658a8335ccde5a58cc8d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/loki@sha256:503e79c68d6fee34e6662e61c8ab16d30b6f51b3ef426b4e66b150589ef36049
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/loki@sha256:90c4f8f6d4a18811305ee588e82755e7a1913c28f82f77f557482f2b271f3ba2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/loki@sha256:f8c6ed23d24fdc5a77eebb98a45a51e1baacb527399e2f19bbd3314ff4f0a0f9