Sign inSign up
JupyterHub

dhi.io/jupyterhub

JupyterHub 5.5.x

CIS
linux/amd64
debian 13
Tags:

5, 5-debian, 5-debian13, 5.5, 5.5-debian, 5.5-debian13, 5.5.2, 5.5.2-debian, 5.5.2-debian13

Index digest:

sha256:0098b6e6c16072f0cc42a965ab8667b51441bf0a4b12a27283e8582933a0b4fe

Manifest digest:

sha256:6beeefc4c4129c353416c32bcd864f3ae1f255e20ba00d44b9707bb37a554ba1

Size

72.59 MB

Last pushed

52 minutes ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jupyterhub:5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jupyterhub:5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jupyterhub@sha256:7f2a73acbca0e4f9663f0567bb0f604aaa96fdea9d72882983680f14ac104ea3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jupyterhub@sha256:88c0062629e11ca0bc97fc658a4e3b600437497ebf8821ebbfa199e0c171584e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jupyterhub@sha256:adb4d7367fc40df6daeaa98d556b11eeebcac3fc49b394d72aa421d900f9e9af
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jupyterhub@sha256:6e0f5dcd936caf00e928a82e449d0a147c22d88c24d8a2957e348dfd828fd3aa
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jupyterhub@sha256:ad9cb159f13c1301f5bfa7f8a086ae5443c4ddc5e1e0b69caed605afc3644478
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jupyterhub@sha256:69a042817bb311806e04954c53e0cbc21a75cfc482e7ac3a98f21c7f90a8b916
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jupyterhub@sha256:43f046af75fd18b78cc53ab95e9bfbdca5dc418ad6ddf23c00bbc76ad7e3223f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jupyterhub@sha256:0fc22b5faabb636276f0dfe0ef9075698dfcd37e006ef5eaf632df390dc78bd9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jupyterhub@sha256:4ad8962bd97c55a010e9309c5df8d23c2de20586e3428ecbaf0f8617558ecf50
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jupyterhub@sha256:4508f8c504442334483e759d4990e642da5117d8dd67d61173fb1ba9b6474bb7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jupyterhub@sha256:3b2451512b082c5e20f1ff2b52145fd7bfd8ccfd000a2b11f746604a270a067f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jupyterhub@sha256:abad6d1e7bdc232051723470c2f4bd4bc332e1a5b06fd1a1733f632373e6a4db
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jupyterhub@sha256:3472938e1a9ca902fd0fb810f1b5d4cce6066c610d5db7c37f08253785ae2fe4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jupyterhub@sha256:8056cea326706ee686fd545f3f257b0abc35d0ad573d44fff4b74964ae6dca34
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jupyterhub@sha256:0629aa992f6824c756e12b6ed686adadee31314011f1927532f91f34e8e31aef