Sign inSign up
JupyterHub

dhi.io/jupyterhub

JupyterHub 5.5.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips-dev, 5-debian13-fips-dev, 5-fips-dev, 5.5-debian-fips-dev, 5.5-debian13-fips-dev, 5.5-fips-dev, 5.5.2-debian-fips-dev, 5.5.2-debian13-fips-dev, 5.5.2-fips-dev

Index digest:

sha256:ddb744f12364285dd96851e158520e0e155bf5fbb64e16d788c93d00a67b71e5

Manifest digest:

sha256:65a30f11e43650546a3991445fa4f6ef6ec70e9903f73e1721484a62bf1cf9e1

Size

85.86 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jupyterhub:5-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jupyterhub:5-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jupyterhub@sha256:33da8ae91608279fdfded262134e44cfda641400c848e67b681a33832f2519e3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jupyterhub@sha256:e393e2a14dccd3cf3bf258af4458563bb2afcc4e8c22473a9d879d50ff282ad2
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/jupyterhub@sha256:10bdcc744360737ecccd6f7e4d20a208ac70141795f279a6009fae55e1a8a7d7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jupyterhub@sha256:0f386b4fa8ca7d7abd7261c953d2164b0e3937b1f2830dd75688398e10a91ad0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/jupyterhub@sha256:8aeaf8f2a48c9cc5c6e0bbd48f7501e2c345dde50bf5b2b7ccab154cf9119f8c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jupyterhub@sha256:fff3d77a6eafb8da3dac030fdcd7cf8a3e642f85482323cf622f5caf98960bc1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jupyterhub@sha256:14c66d92131210b3afba0ae2a7f1d1d0ac675d665ac46de3f0b703d38ae4af2e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jupyterhub@sha256:ce942a2aac87be5a99dc730461187afef59695658d9565476391db8076aa8c5c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jupyterhub@sha256:a6f41467d2b9a8fd597e3a0fd59a72742025931eacff27691ebdbbf31fe0871e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jupyterhub@sha256:f8e356de39042a40572e387c5dc4a926fb6b9665163749fed462374803a2725c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jupyterhub@sha256:862732ba27ea2db76ed0c2d31f272e2f9b17515f8b1cb52ac61085d1b2738cb1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jupyterhub@sha256:3c1835f3cc08962d8c6be3c2998e8d1bb99ede5be771e0545aef4bf4507b9b60
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jupyterhub@sha256:b1b65986afb01b9f69be560fc2faad9ca978c83251f539b759e06caa9ed16dff
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jupyterhub@sha256:568b4251c058aa50143a0e1da0931845ca665c1fe181c6d2f1ccda826ef6ece5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jupyterhub@sha256:7f0df064eb1148b64b67e74947860239b4478a153104e1456a130037c149a6fc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jupyterhub@sha256:4f7a936cddd665a162f06e3f80ed5e6370babc94d9f1b18face1799dd178571d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jupyterhub@sha256:f9de477cb7aa1170cdda6e29faf1cbf03f09cf60bf1e078e0abbd19d03221de3