dhi.io/jupyterhub-k8s-hub
4-debian-fips, 4-debian13-fips, 4-fips, 4.4-debian-fips, 4.4-debian13-fips, 4.4-fips, 4.4.2-debian-fips, 4.4.2-debian13-fips, 4.4.2-fips
sha256:41ee4284190115d25d5da27d2953403776e2b69dd6e1f3daedc8f37b49a6462f
Manifest digest:sha256:b6e1d826d07ef3d5fbe93de715a37d3275e2104e33bac3e5a27ec602e53193c8
Size
49.39 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/jupyterhub-k8s-hub:4-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/jupyterhub-k8s-hub:4-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/jupyterhub-k8s-hub@sha256:d5ea1917816b493418c84b721aa1b6309c3880aa1d2b3b5409586658fc5fa7b4 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:b0b8dae124152ac867b966e7a5a684e8ebe70876cab9b5c2000f42db87efcd72 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:536ce404b39ce7d42d2bff5ce0daf138ed4f223e2dbeeb1315e4074ee0efdc2b |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:90ff46d1cb84264e29b02288530bd98452ec2fd5d32bf654dbd9abcf14ffba87 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:4ba8ff05adb54ee2ad9edf876a9f98b851939710b0038e32931363a0dd1bcfca |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/jupyterhub-k8s-hub@sha256:ca766e7c1960cbf7c87f81e1ae977be72d3b0e2c8e633671432a0d85639a5bf4 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/jupyterhub-k8s-hub@sha256:8eed634d92de9ea3f84673d40c094903487f88fb470b103f46654062901db63f |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:9d8f4b92de11c8eab863537eb5631d96bf323f69e073f8e8758060bf3e66f872 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:fe88abb744f5b39dedc6b37bc01983b50427bd54dcba792d5bfd6a2ae76cc898 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:5592e2c1d3e9b7824b898f61dd0c2ef24f5fb4aa6618308601ca0443ea1cff90 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:d5750f76caca7f1846888011b8aa6d3cb4c65283f32764adee9cfacd1a0133f5 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:f51fc217177654963c55b0fe62d2062bea81d00743658d32954baeec627a3f1e |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:d417936fe179ad3bd0c534c7c526d9df29d648b287944ae7401b858f5c5bbda9 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/jupyterhub-k8s-hub@sha256:ec554e4c08d74e7cc235ff4daee5ad9fd60cbb248e379187df3c66bb0d06b152 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/jupyterhub-k8s-hub@sha256:5f2bcbeb042fa97e1041c862a0cab6bc235feef69bd6d5540bbb627abf7f3ab1 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/jupyterhub-k8s-hub@sha256:b03d94751113d3b2031bd63365af45f11fa727ea4144ed17fb2c2049fc200e39 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/jupyterhub-k8s-hub@sha256:1bdbc0c1f3cb47ee57e0b268d22a7e57465446868fa25fb2524fab73f74dd2c7 |