Sign inSign up
Uptime Kuma

dhi.io/uptime-kuma

Uptime Kuma 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.23-debian-dev, 1.23-debian13-dev, 1.23-dev, 1.23.17-debian-dev, 1.23.17-debian13-dev, 1.23.17-dev

Index digest:

sha256:9d14fc7f31a777b88170ef310c424742a4e0c9defc3bede184255c9bd54395f1

Manifest digest:

sha256:a0b78e7109f4a938b26da74d279b74685dc0a9e2c8e0cac1f8fe131444644e47

Size

84.25 MB

Last pushed

4 hours ago

Vulnerabilities

0
1
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/uptime-kuma:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/uptime-kuma:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/uptime-kuma@sha256:f58b6650f6b767d8ee2b65832945e5f1b03041243a63d920fd8ecb1f11f5d28f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/uptime-kuma@sha256:89ac7c2769e453153cda9f87dfa9c5debeb575b63282129202e28d3e67421b62
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/uptime-kuma@sha256:6d73d7990b79ef097553d2ed11dcac6fddae56d55ffe3580571294e484de30b4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/uptime-kuma@sha256:bcfad59c8e267c01134aa4a070407573afd64a20eb0c863aea8566dd509de2ce
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/uptime-kuma@sha256:20a10a4be07b3c54ccaf7caf4f6333845cfb6dc212d330329cc5fffa1ec98a44
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/uptime-kuma@sha256:97d6a30148ba08546cf78573078a9b9750edc818705fbaf6b9f6761466686089
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/uptime-kuma@sha256:2b9c8c77518e3610aeea1d7f590463e3f90a5990bbc78a883f3320d6e9d98833
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/uptime-kuma@sha256:3497e78f215519d776b12f3d346b9be5b4673e0325079306127e285e05c4fb26
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/uptime-kuma@sha256:ff4fc25b6a9024670652150ad16d57be2c7748db9fc5bcf5d514b11dd44339ed
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/uptime-kuma@sha256:772de5b6923a1d94025f189264d080639d8f42c0475ce7dd28795151dfb3b8e4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/uptime-kuma@sha256:31406d5503609711b47b7d4abf549b0d0121f39ba82ea57a07799185cb18632a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/uptime-kuma@sha256:088eb4271dce76ac5278b607c45c4358ac9bb80933770c1a7b46a9d06f858c14
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/uptime-kuma@sha256:727011051b305491c14d1e79c5a1e3deeecad012f6ee437f6074ee31f428e1f3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/uptime-kuma@sha256:564149a455b260eadedd89c5e124d962bdacd83fd5da4cb2cd243be3556d1f2a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/uptime-kuma@sha256:c73e5d9e09d9c9d6f35dddfa2ab2338e522c12bdbbd9e71cf6c049373e4e5d71