dhi.io/jupyterhub-k8s-hub
4, 4-debian, 4-debian13, 4.4, 4.4-debian, 4.4-debian13, 4.4.2, 4.4.2-debian, 4.4.2-debian13
sha256:a356e6d5c29213aaeceb405d077071cd379f3d06a74dbc6b193fe5ad31b1a84c
Manifest digest:sha256:f472cbaa5db024ccbc679bf5c075bf3f4e1c0569520a0a5cdef017701c9f321f
Size
48.60 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/jupyterhub-k8s-hub:42. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/jupyterhub-k8s-hub:4 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/jupyterhub-k8s-hub@sha256:92672f33620c3932fa1534baedd821c2132991648ccd3e8fad34a715746aeb6e |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:eb0c84fbbb000f64daeafb967b312bf18880015ceb4d32c5b686ef57d030811d |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:b40408b8e34e56f72cae7b1f3ec4dab7c52226ce929d3fd46f602bb3aba48242 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/jupyterhub-k8s-hub@sha256:37d93317f9192101585f387abf112b7af178ec2e183aab62ed42fb4e3049ee53 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/jupyterhub-k8s-hub@sha256:8351889bfa66daa9d52584b697f79f3b6e290e91ad74565db97ad30205b2e11c |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:bedd640540a640921cbe64531299deaa8ce1243c8749589ffcf2e8c07c2d127b |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:55c3e66d67f17cadae6ee07c57ffdb8ed8f8c809d8a462598dcdbfd69299065b |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:9f4a40003ed9157e8bd73be126e54bbc35ddd60c63b9b7b543b9f3368cf6ea24 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:4df53a087d1391dbdc8ae0a8ff0600d832502b99015389b0aa2309215ab6e0ea |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:e08e29f7267883cb9914c0277732e48034a5431e58010b8f7a7bb46c9d2f575c |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/jupyterhub-k8s-hub@sha256:d37d926e22da0e44113942a5099a40137549acaf36aa89ed03993f97b671dd46 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/jupyterhub-k8s-hub@sha256:3938129dbf16fa1214f126972ff0345d896f437b3ddcd7ce79a21fd6dd37e5f1 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/jupyterhub-k8s-hub@sha256:da7311d48ae5138f35cbede591ed1f994840b62c4df3a4a7f21dfdb530d7d2ad |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/jupyterhub-k8s-hub@sha256:0477827860e9b41ac2c13c54e3209a0435fbae2f6ec395f936f0f21dc7393c4d |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/jupyterhub-k8s-hub@sha256:86d53858f37e6eae2989b0b79262c2fc8252826fdbb381e5b8374bbcd06d48aa |