Sign inSign up
Tempo Query

dhi.io/tempo-query

Tempo Query 3.x (dev)

CIS
linux/amd64
debian 13
Tags:

3-debian-dev, 3-debian13-dev, 3-dev, 3.0-debian-dev, 3.0-debian13-dev, 3.0-dev, 3.0.3-debian-dev, 3.0.3-debian13-dev, 3.0.3-dev

Index digest:

sha256:8968028873a46acc05be7f7f8d3e5e176931dea285d898899fbf235aac074fa7

Manifest digest:

sha256:82804cb033ef003c41d88ad50b1849f51c49475b38daa8376aab43f07c099507

Size

35.49 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tempo-query:3-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tempo-query:3-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tempo-query@sha256:11959cd1c1ec66d54c3fa819091c4bb1574d1e629d0aa416af970c380ff26f28
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tempo-query@sha256:c0202ab3a578c15947cdf107d8799f35383f028901c413c2164ff6ed10c837ea
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tempo-query@sha256:35aa991ed70f10478ee83842d45934b00e9f051f6d5fdff10d2108fa1a0102f5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tempo-query@sha256:5f1728c29d3a044418ec4990fdda480b2beb92268a0dc004a100edd63e48a74b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tempo-query@sha256:d5e3d5f584d7dc0e86055ae871ef3879d59190c1aa5ed5e5508a7ed250e199ba
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tempo-query@sha256:e1b3f74a2dd6fa11815eb66482a86b9f3db9e80e10d7f3448779adf50203a946
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tempo-query@sha256:ca86b06f68f66f2bf8a0177ad0f5546249018cb2ee1bc8a653bfbc0c750ab319
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tempo-query@sha256:5a87aae6bf1c56b3822550276dbe3523a8abeef62d1faf9fa2a38902b33067e1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tempo-query@sha256:4db7c0201c5068fc098c9aca589ebe2a3e83b3a1f71cb8ed21d69d583af6d96b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tempo-query@sha256:09a9f11b2ff2745371399521d4fe95628b584d33e9f3601ce0a78257e7a72fb3
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tempo-query@sha256:1d1452c3c7027b9c0c03b79fdfb5fa15a30a621ee4c8d2698ab5966155a95f35
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tempo-query@sha256:f04b2f09c428fe296b23914c5d339472efe838572e24d6d673633159cfebe8b1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tempo-query@sha256:1bd56c60137c5c8962dd4c9f3f680363793eb008e067c617008412a98e9decbe
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tempo-query@sha256:c60c3198622026baa4d32828b7379e27ee20def3dc5b6f6cccae6928f02c1ed7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tempo-query@sha256:bbe7268a5fab6ff4eefcabc7c4fe3ac630ee46bf6b95bcdd895f8bff4524a33e