Sign inSign up
JupyterHub

dhi.io/jupyterhub

JupyterHub 5.5.x (dev)

CIS
linux/amd64
debian 13
Tags:

5-debian-dev, 5-debian13-dev, 5-dev, 5.5-debian-dev, 5.5-debian13-dev, 5.5-dev, 5.5.2-debian-dev, 5.5.2-debian13-dev, 5.5.2-dev

Index digest:

sha256:acfc1475c3f6378f979665811ec0ff4644c154d8a13db5f95483b5c0f8d8e3be

Manifest digest:

sha256:cd1218b594bdcb30969d93d9c79a5f0d9a63968b41af2a0fd1bb5a72bb4a51bd

Size

85.18 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jupyterhub:5-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jupyterhub:5-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jupyterhub@sha256:bff9557aad69c286ca007c3cb6e5f34e2b8708c2948f08c5634c5a20f4bfb4c3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jupyterhub@sha256:71e261e04f23c04e35e7e33f1fd678cdbe9c437fc1ad5e4f716443464abeb9cb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jupyterhub@sha256:3d891e65eaac13b28a274e0b19073aa84fe7fe73f38cef177abbfac81cc87da0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jupyterhub@sha256:c9e500faaa9b43ff5d9e95e7eea1a610b6ab2621dff8fbdc52995668068fa93c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jupyterhub@sha256:aa10a3e3f48dbcf95f8ab31bc72ab32ffbc68458d30cdefdba3a3b1e596177ae
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jupyterhub@sha256:ae33838c921bc2f407db2095dea9ff48a731712669ac32f41bb39baad949df17
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jupyterhub@sha256:b04fa47d1789a8c0ca958a82df49c131ca721aaa336167e79aa5152f192b07d9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jupyterhub@sha256:3981e47ede96de43d5a57dc92c054bc8d293c1de58733ace8a8d3af282b280fe
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jupyterhub@sha256:b0f416fbfab0f4450f44a6acc5438d9d47b56324795a125a4329a0aa193bcefa
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jupyterhub@sha256:e033d7c1671d2392d4f79477e564497280de83ded9945750cdbda84b399d0730
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jupyterhub@sha256:df8b6d026844efadf8cf7389f7516c2141a4d85c1d65bb3f238185c67bc7b620
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jupyterhub@sha256:0938dc5263c9729748985f1f317956429ee5d3070fe218e7658f81b4c660183e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jupyterhub@sha256:197196106e978d3583c3355f03b98690a7a330f7987400a6bbc2694fa83041c5
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jupyterhub@sha256:bb25d3dd700750dd59820c0b208df8ce3f9f15bb6a2a58236b5eea134eed7193
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jupyterhub@sha256:9e67f1e19fd3cebbbd03cd7d31822f9e7bce4421ca6082791ea6ab9e6d7714aa