dhi.io/uptime-kuma
2, 2-debian, 2-debian13, 2.5, 2.5-debian, 2.5-debian13, 2.5.5, 2.5.5-debian, 2.5.5-debian13
sha256:abd9aa023649b34f4d82a2d5e7d22ea3dd2913aad40e48d4ead493dc3936ba77
Manifest digest:sha256:f13739f017c48bed60573dfb058bffae93a076c7109ab5f61a0642bc306c57aa
Size
73.80 MB
Last pushed
9 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/uptime-kuma:22. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/uptime-kuma:2 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/uptime-kuma@sha256:6ff904026c90afcad62e074b785b3219c552be75831f32b35c74301a2775194c |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/uptime-kuma@sha256:2e49cc6325de42c18796cd82da871d4802dfe23065491714b149ce052c2330d1 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/uptime-kuma@sha256:2d6c509bea931f06bbf46675bbdee7d3378b7ca579dc70c9d5298234b3c00a65 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/uptime-kuma@sha256:c9e2c99b1b740af57d51edadcb9f10cab7e109f78a6bdb2e7e9b410da72d1c26 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/uptime-kuma@sha256:11fec220dff0c4c003b81fef4d38cba55c5bc88c24d7c1239643b288bc1d4034 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/uptime-kuma@sha256:204ac0466bf0afde2d04884cca09cd863ddad96d4cbc17de535715d9eecbe1b5 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/uptime-kuma@sha256:fed40bdc529e150745af3b9ea5933e0021ca17f15e563a98c4cb8cbae4316f52 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/uptime-kuma@sha256:f95efb48156dd9bc38f8e52a0d673ac1a02a6f38fd9e893d01afa3de29c6e67c |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/uptime-kuma@sha256:b9987e6f03aa925608e7598847e4d74e521f96cac31c55686ca4eaec10d6f305 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/uptime-kuma@sha256:6781e7941a634609f879baef0144ab410e7cc33b67ef1b1e128dbecb3dc9695e |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/uptime-kuma@sha256:677e60b8c68a0ed12c2e40cd4cb5a1775095bcff522553a999120f989c95450e |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/uptime-kuma@sha256:3ffd36375340f0f21d99a58603bd181d837ba8f76a20d2c8189dd38dc4ed437b |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/uptime-kuma@sha256:b007975c418517914f7e3b3a85a861de809fb93895f8b639f1b63776006eaa20 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/uptime-kuma@sha256:e9192c9760996ebf0c060e302ff89a1be51d3336bf9acfe6881f6306af7d178d |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/uptime-kuma@sha256:0629d631b396de548722b94b608d3f9884e8ea582b7787cf074da7f06f2259d7 |