dhi.io/hubble-ui
0-debian-fips-dev, 0-debian13-fips-dev, 0-fips-dev, 0.13-debian-fips-dev, 0.13-debian13-fips-dev, 0.13-fips-dev, 0.13.6-debian-fips-dev, 0.13.6-debian13-fips-dev, 0.13.6-fips-dev
sha256:eb622c8a6ef5c104d5baf1bdd75dd8acf26e698bbe9751ebc1ede336cc7402cc
Manifest digest:sha256:374dd576804631b6f894606ca805a59de606250f2024e45349b787cba2af295b
Size
36.39 MB
Last pushed
2 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/hubble-ui:0-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/hubble-ui:0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/hubble-ui@sha256:b699814e08b2fd87f76a8bab9d4bfaf4741df06078e5218fcb8d56992f3ae7d8 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/hubble-ui@sha256:b776b074f40bdc4ee45fe37bd2edc7fe419bfea2c143d16526648fc35ae0bcb6 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/hubble-ui@sha256:dbd5cd91a9bb745e67109cc926bb5b3ebf221bfef8c3ac67cbf04a4d8abf04f3 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/hubble-ui@sha256:92742b453a670f54b115de87fc2f8936f41ca7627bc1a99bbb529e542bb32a1a |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/hubble-ui@sha256:f7f5ad06b8a435c44b738ee0a452c4a85908ea67cb11fe6b5f6a8d030e3d89b8 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/hubble-ui@sha256:7460cf342b6897f1cc0b7b224d8d643ffd5e1971d2f833018082305c79fdb516 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/hubble-ui@sha256:5a69d7282e3857ab6028d05694ea22990bfc23511852d66ca9fb4408079490af |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/hubble-ui@sha256:92e0d1d4ed4ddd8eedccfc9f63b5afedb7def44c76d3910ec7b5dccd95052151 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/hubble-ui@sha256:d863c09d57fabd497bdac8f19d235732fdf9b00228ed764264e7a08d79f0ffbe |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/hubble-ui@sha256:205a89d2766dae0a58ed7123e9feb95d04b772a1fcd07e02f3d7a5dea1de1719 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/hubble-ui@sha256:3435a4545e01b1484ba45a900a93dd51a5727cae9b91dab94bdda85ad00dad24 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/hubble-ui@sha256:2bae1b57b891e2cc6f75c7fdfffdddd9691a9a1f3247be0f1aa4c3c5866b9ff9 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/hubble-ui@sha256:d1c8626ec51791f574b274802b934eb08a8a9da1c7f489e14305031d18b94a08 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/hubble-ui@sha256:c5378645af90a12dfb3e03f8f89d2a8af1468294b517dddac8ffcf63f9273e34 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/hubble-ui@sha256:a810d0f0b5cc90d5d9829c0fb04e3de5652c0b016cc94850572c3b72d0c22a9b |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/hubble-ui@sha256:2cbc029f4d3ae64b08c52bb7694496288de72e6b626f8b13cdd7f5aed6f2cbf1 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/hubble-ui@sha256:a2a29680ad30533cb1a04891c24f7f174dcb2df3c6f98b2b16eb23847eb1b435 |