Sign inSign up
Uptime Kuma

dhi.io/uptime-kuma

Uptime Kuma 2.x

CIS
linux/arm64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.5, 2.5-debian, 2.5-debian13, 2.5.5, 2.5.5-debian, 2.5.5-debian13

Index digest:

sha256:1218b5da9292f284854673123310b20b3a8c43f7157979227da13ca3b38010b1

Manifest digest:

sha256:af4b82fb3ef45b467c5c95f20ae617d4df336da76cf1dda411e3a773087e4505

Size

73.41 MB

Last pushed

1 day ago

Vulnerabilities

0
0
1
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/uptime-kuma:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/uptime-kuma:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/uptime-kuma@sha256:a6afc7a5004542c75613e4263f10f662694128f567dd873c41228fc63b18ecef
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/uptime-kuma@sha256:ffeb4e79201a7c5f248273385d1adab4058d05d70dfdfaa259e243de5308d2d2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/uptime-kuma@sha256:ef9adbb3ab1642d8f09579490e3eb79c79975b36be7e3cf1ada62be38dbe322c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/uptime-kuma@sha256:b33c4211912e8d1f430fbf3a02be51e41f42b08bd1961f1402e3dbf85d30f5d1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/uptime-kuma@sha256:598b6c05102443c433af9531eb55921b193844d07d00b33aaf2e9541859a2bc6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/uptime-kuma@sha256:89ce205b0fd2f4e3e7dd8671dd6ec1268fadb7431489399a7b97ffcdc32f5ac8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/uptime-kuma@sha256:50c9aa01163030a1f94d4f39da70647757bef53d0ba85cae152b7509ea4a635b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/uptime-kuma@sha256:efe89dc6edf82627a01f5cf6d828b2a166c85e00b5ad7c8ccf0af778b9e50b10
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/uptime-kuma@sha256:7caaaaf41a04a57ec5ea1010fba7606c92cfa940b66b9f096ae022ced2c4ff6f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/uptime-kuma@sha256:be8d718ede4a81c3b931c257cf1cc2434795b26de5389abbb48617945518170c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/uptime-kuma@sha256:7a89bed1da56a3760e85042167db3f2a52581ed50fded85389cef54f66242a5a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/uptime-kuma@sha256:810e616ee4b1fd9d20d64c554eb7b91371ddf1d0962e4d4be7fa171d575762c3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/uptime-kuma@sha256:db972e580bbc983c06c34fb56311e199433dfd1f672b862e895457c92dc9f329
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/uptime-kuma@sha256:8e18e9e7669a7c9ba3ec729c44c48d72965572b68145d079f5599dc4de674a81
SPDX SBOMhttps://spdx.dev/Documentdhi.io/uptime-kuma@sha256:aaac6b9354b58d32ec02f31d6e2463f64d4ba4dc9d3e172877bd0b7b0a986399