Sign inSign up
OpenCost UI

dhi.io/opencost-ui

OpenCost UI 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.121, 1.121-debian, 1.121-debian13, 1.121.2, 1.121.2-debian, 1.121.2-debian13

Index digest:

sha256:b9044b5dcaabd039524007ac2713f8a96660b702e2b30ed4ae035e2f812fa8f6

Manifest digest:

sha256:641b4d3740b9ca82f49811d0f882044f623fb11717ec002a4358d93dc62f5062

Size

15.93 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/opencost-ui:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/opencost-ui:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/opencost-ui@sha256:7aa7eeef7119f3650197362acedd1c96e28c4d2a50c2fab9668681fb69666332
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/opencost-ui@sha256:fbeebc67a87102d91add8afb2b2daa18190587a5471e3d180a29a314f3b3d80d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/opencost-ui@sha256:e3dd8b7515ed21c8a9d02c18a6d6f12749187b6344abb5b1f221d474cfaebabf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/opencost-ui@sha256:3e748f9082eaacfba0d145099eb04a932e43607d4922075753b8efc48b95c130
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/opencost-ui@sha256:379b6b5dcbf116137f2f299f94cf15c8b2ba322c595aa10f8f2c339b3ce30a38
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/opencost-ui@sha256:5d95e8fcc5a3e5f0bb5b7f85a499084e1b6510d1e361a42b3c4ed404f42fbc0b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/opencost-ui@sha256:17be4f4b243cba4f8e1c69dca4e5591c3ca2c3528f7259a4b3dd5618ba692504
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/opencost-ui@sha256:ccb6031126079b3db9fa8957342bafbebcb38b540664f8b465cee3083cb59450
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/opencost-ui@sha256:95e5567fa62f7015421fee46c37acef6444b835e81301de8ffe2ad4d103bc432
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/opencost-ui@sha256:2c18222bc935eb8945ca8252516c610b05615876763e98264b211c89d8a90b99
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/opencost-ui@sha256:a39f6cf9f63a2855d4c535c960edebd9e970770dd5aa983743cdaed96dbbc477
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/opencost-ui@sha256:1598d417a7a47b48c43a06c759584c5fea1b17fb0f2834908e29dadc610107af
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/opencost-ui@sha256:fffe3834868c61799a3a42a6c03022e5707356323692ac6b4a425b2003f5ad91
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/opencost-ui@sha256:02bbbef812581c67b0496d30e3ce6faa8e1fbdb9bde118badeff77bfb07645f7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/opencost-ui@sha256:8b6c0ffaa8f4d08ec002cda5ccf45ae95d780cdeb6d49128e93af79c3badddda