Secure by Design, Built for Speed, Hardened Container Images on a minimal base CleanStart OS.
50K+
Verified PROMETHEUS Container Image
A hardened, minimal PROMETHEUS container image built from source with verifiable software provenance and an SBOM, designed for secure production deployments.
For additional versions including FIPS support, explore CleanStart Images — secure, hardened container images
Download the container image from the registry
docker pull cleanstart/prometheus:latest
docker pull cleanstart/prometheus:latest-dev
docker run -it --name prometheus \
--entrypoint sh \
cleanstart/prometheus:latest-dev \
-c "mkdir -p /tmp/prometheus && \
/usr/bin/prometheus \
--config.file=/etc/prometheus/prometheus.yml \
--storage.tsdb.path=/tmp/prometheus"
docker run -d --name prometheus-prod \
--security-opt=no-new-privileges \
--user 1000:1000 \
--restart unless-stopped \
--entrypoint sh \
cleanstart/prometheus:latest-dev \
-c "mkdir -p /tmp/prometheus && \
/usr/bin/prometheus \
--config.file=/etc/prometheus/prometheus.yml \
--storage.tsdb.path=/tmp/prometheus"
/tmp/prometheus should be executable to run this in local machine
docker run --name prometheus-vol \
-v /tmp/prometheus:/tmp/prometheus \
--entrypoint sh \
cleanstart/prometheus:latest-dev \
-c "mkdir -p /tmp/prometheus && \
/usr/bin/prometheus \
--config.file=/etc/prometheus/prometheus.yml \
--storage.tsdb.path=/tmp/prometheus"
docker run --name prometheus-port \
-p 9090:9090 \
--entrypoint sh \
cleanstart/prometheus:latest-dev \
-c "mkdir -p /tmp/prometheus && \
/usr/bin/prometheus \
--config.file=/etc/prometheus/prometheus.yml \
--storage.tsdb.path=/tmp/prometheus"
Why Use CleanStart Images
Content type
Image
Digest
sha256:321ee4e27…
Size
104.4 MB
Last updated
about 15 hours ago
docker pull cleanstart/prometheus