Sign inSign up
Prometheus Operator

dhi.io/prometheus-operator

Prometheus Operator 0.x

CIS
linux/amd64
debian 13
Tags:

0, 0-debian, 0-debian13, 0.94, 0.94-debian, 0.94-debian13, 0.94.0, 0.94.0-debian, 0.94.0-debian13

Index digest:

sha256:e94999ab398d631bbf387d1c7d3041811b423e8765df623037f636147bc27d54

Manifest digest:

sha256:389b2a47cf6cfeca33c4d1e1f89b66b61295cee28e4c51d994513ae94f95d026

Size

18.05 MB

Last pushed

4 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/prometheus-operator:0

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/prometheus-operator:0 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/prometheus-operator@sha256:24ffd7d2295042c5a6febd959318fd027078811600a8c0030c2f5cf0c4eaff42
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/prometheus-operator@sha256:1096c0e4bdfef0b91b3375a5eb430bdaa934304e99e686af67a320fc8b4ed208
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/prometheus-operator@sha256:9d4ecd533f4e7af127701467ba931eee16f2bb279313bb9a3c489cdac6d01f48
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/prometheus-operator@sha256:6400bbb69ce82d3901779bffd72e77d1ec07ac9ddae0d94106c0860151c50422
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/prometheus-operator@sha256:a44142393c1534f624b9df5a5f8f1b1d5fea1aea70ae8315e6ce480135b67dd8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/prometheus-operator@sha256:77a7e4f028493fd35605ac156a21259afba45b0b273454becd04022db36ae0d3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/prometheus-operator@sha256:524fdaf35b02bb419b15dafef45fcee021281ec3364e00f6675d523eb1d97de0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/prometheus-operator@sha256:1917a99d397806da34f487518dd2c9b33ff1214ed12e389ad45505be8dcff52c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/prometheus-operator@sha256:4e64a8424b9c3f2e37a3ede87cfcbdc3b2d4ff4d93735923ac27f13f85a25d38
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/prometheus-operator@sha256:a6d8ef2f57b204a3cd44baf721e755f026932e2367e7bf4623154a985b4e4a78
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/prometheus-operator@sha256:f67fee3b36cf996c9568ee5492fa3d0cc6d59c4afc8e7ca676fb150263447914
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/prometheus-operator@sha256:6bbae34b34ad66055dcaa3a3b51f26e8828457364fa88121c6815d6b862311a0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/prometheus-operator@sha256:759f8932a853083c4c9d3551ca493894fcb6df9fce1ad98ba8e9ea3c0c185c7b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/prometheus-operator@sha256:0cbec3e55b02967f92df5fc75f43148747b118fdbf578ebb5b8e27c2ad98989c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/prometheus-operator@sha256:9ea010377d5b260ae4dca55794e0bf43372c517e600f85e23355d3b32b5bdf00