Sign inSign up
Prometheus Pushgateway

dhi.io/pushgateway

Prometheus Pushgateway 1.x (dev)

CIS
linux/amd64
alpine 3.23
Tags:

1-alpine3.23-dev, 1.11-alpine3.23-dev, 1.11.3-alpine3.23-dev

Index digest:

sha256:30da456e68da390daf68c2dde213ad199a2521553598a9b63057a06bd41e646a

Manifest digest:

sha256:fb88cf6fb48e7df3f290965bb91a5076e62d2aa8aec1471bbd0dc23acfe34550

Size

14.43 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pushgateway:1-alpine3.23-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pushgateway:1-alpine3.23-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pushgateway@sha256:d2917ca7982b9b702ed83288d24b289cc48974adea41b07c5f27f6a09b036ce2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pushgateway@sha256:9119cb5db46ccd4997002b662f2952d7cb6fb9f47965b73f9faf400722eff86d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pushgateway@sha256:3de83ce34458b3bcae8cbcf6bcbeca60dcf3f61d0ef2ef673e226fbadf5b132b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pushgateway@sha256:358f8d9fb7e46d2c15caa92bc555a54ceff82e0fef8fe9ef9d001e4b22cc901a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pushgateway@sha256:d044544a8c662888529e1a31f9e8e210a5302e5bf3cfb66809ce7fda3c208652
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pushgateway@sha256:e164b2e6638b99d346075e0356290ece5f742d4d6b3ba520bf7f481f8fae7857
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pushgateway@sha256:f1065244744e4663f7bed1c6898b04930d3971b5a75fe2b40db2306469e20b22
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pushgateway@sha256:ab5a2472d6e8f9ed37b8a564d58bd93af44a56674c054cabcae3b59d2a931f60
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pushgateway@sha256:9c89cecbd558872bce6d7b77c2a72a1fca4d07f1501582500fee0b0d012640b7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pushgateway@sha256:beaa43df6fccd0a882ebd8f018da21effbaf119a1b2e8e1e0a47a6135a6dd0b9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pushgateway@sha256:1472d356c503eaef8ca695a98474fe60b0a27574ae7c710233c5c243c7583f9a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pushgateway@sha256:a3ac0c7ec9d7701cdebc6b400e35c9d114c05a512d487f228d7842d174c8a8ac
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pushgateway@sha256:9b505d6aff80288424a40a26fa4999bd42aacc8dd8e454eb3aa4cbde0f37388d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pushgateway@sha256:3d288ff8b11cc723dea8836b9971546c7fc75687e06653e4489a10524b6e0631
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pushgateway@sha256:541cb378da7f8508c282796c80d533236cf42cc82f8551a03230ce88ce3e619f