Sign inSign up
JupyterHub K8s Hub

dhi.io/jupyterhub-k8s-hub

JupyterHub K8s Hub 4.4.x (dev)

CIS
linux/amd64
debian 13
Tags:

4-debian-dev, 4-debian13-dev, 4-dev, 4.4-debian-dev, 4.4-debian13-dev, 4.4-dev, 4.4.2-debian-dev, 4.4.2-debian13-dev, 4.4.2-dev

Index digest:

sha256:9069b71b8531732a68caae59b040be8c8f1f75c6025423c767f91f8d51c41f10

Manifest digest:

sha256:dd3699282c6ca27fa82446f2aaaccb4f2e77dfe6422d033dd31e5faf3f32174e

Size

60.61 MB

Last pushed

2 days ago

Vulnerabilities

0
2
8
3
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jupyterhub-k8s-hub:4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jupyterhub-k8s-hub:4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jupyterhub-k8s-hub@sha256:605146ca835f85860c9bf8fb7a1426e23f16f9d65d0fdab755bf17eba9b80002
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jupyterhub-k8s-hub@sha256:519c96adb658c8d33bd0a63d9276f8458e96270abcfdbacc152420fa2d70b425
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jupyterhub-k8s-hub@sha256:9d1cf06a6367f0a8a585dd58af57bb75aae2135a54c936c5973ec3b152ddddb7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jupyterhub-k8s-hub@sha256:323fa0d50d8ffcde6b078d6919d4e461132eee960fa732665f837a9ac6ed6eaf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jupyterhub-k8s-hub@sha256:d63cfbd18cc9a9bec6113c5734557658ff4e02c87d6e1266fa1c39d4dcbb6137
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jupyterhub-k8s-hub@sha256:4953bd3a48ac7042a3ac05b438a7387c9a06601d4b957688a77dcbf73512c72f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jupyterhub-k8s-hub@sha256:ee78004414e13dbffa4ed698edb8b937ac7800006e099a1e702c2581b9faeb83
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jupyterhub-k8s-hub@sha256:49be64a4103fcac216d93656429f0ff274634e39a80720e5ea18a4e92a222844
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jupyterhub-k8s-hub@sha256:646273b7ba3aa6e1f959aabe9833191a1832e969ea08b6b28f6938b925e2756b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jupyterhub-k8s-hub@sha256:f2e18d06fbe1cce3167303f8d44b9a27c1b8f995a0a70ef1959cbf9cb6ea4f60
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jupyterhub-k8s-hub@sha256:f5b54fc2c52097b14525029941087d8c5754aec1b99ac1a8c6caaaa1a91e2fc9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jupyterhub-k8s-hub@sha256:52ca241d69d9b2ba6aa56c07a4c63e59d332617e6b80ea83c3b189ce763de5f7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jupyterhub-k8s-hub@sha256:0ed93f88c7dcb0daf91da99d6757bfa69c478f039baca0328b4b7bea18d1f7d4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jupyterhub-k8s-hub@sha256:d84321c53de93df4d08e2f8818b9c97059a178411a3c8da3d9fb1a00984a5cce
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jupyterhub-k8s-hub@sha256:53f9e8b1fe094ad9d180cea0c94cb142ced665d294faeace0937cf29e88bf045