Sign inSign up

cleanstart/prometheus

Verified Publisher

By CleanStart

•Updated about 5 hours ago

Secure by Design, Built for Speed, Hardened Container Images on a minimal base CleanStart OS.

Image
Monitoring & observability
0

50K+

cleanstart/prometheus repository overview

Verified PROMETHEUS Container Image

A hardened, minimal PROMETHEUS container image built from source with verifiable software provenance and an SBOM, designed for secure production deployments.

For additional versions including FIPS support, explore CleanStart Images — secure, hardened container images⁠

⁠Pull Latest Image

Download the container image from the registry

docker pull cleanstart/prometheus:latest
docker pull cleanstart/prometheus:latest-dev

⁠Basic Run

docker run -it --name prometheus \
  --entrypoint sh \
  cleanstart/prometheus:latest-dev \
  -c "mkdir -p /tmp/prometheus && \
      /usr/bin/prometheus \
      --config.file=/etc/prometheus/prometheus.yml \
      --storage.tsdb.path=/tmp/prometheus"

⁠Production Deployment

docker run -d --name prometheus-prod \
  --security-opt=no-new-privileges \
  --user 1000:1000 \
  --restart unless-stopped \
  --entrypoint sh \
  cleanstart/prometheus:latest-dev \
  -c "mkdir -p /tmp/prometheus && \
      /usr/bin/prometheus \
      --config.file=/etc/prometheus/prometheus.yml \
      --storage.tsdb.path=/tmp/prometheus"

⁠Volume Mount

/tmp/prometheus should be executable to run this in local machine

docker run --name prometheus-vol \
  -v /tmp/prometheus:/tmp/prometheus \
  --entrypoint sh \
  cleanstart/prometheus:latest-dev \
  -c "mkdir -p /tmp/prometheus && \
      /usr/bin/prometheus \
      --config.file=/etc/prometheus/prometheus.yml \
      --storage.tsdb.path=/tmp/prometheus"

⁠Port Forwarding

docker run --name prometheus-port \
  -p 9090:9090 \
  --entrypoint sh \
  cleanstart/prometheus:latest-dev \
  -c "mkdir -p /tmp/prometheus && \
      /usr/bin/prometheus \
      --config.file=/etc/prometheus/prometheus.yml \
      --storage.tsdb.path=/tmp/prometheus"

Why Use CleanStart Images⁠

  • Verified — Built from source with verifiable software provenance
  • Hardened — Minimal software footprint designed for secure deployment
  • Transparent — SBOM available for visibility into image contents
  • Production-ready — Built for modern container environments

Tag summary

Content type

Image

Digest

sha256:321ee4e27…

Size

104.4 MB

Last updated

about 11 hours ago

docker pull cleanstart/prometheus