Sign inSign up
JupyterHub K8s Hub

dhi.io/jupyterhub-k8s-hub

JupyterHub K8s Hub 4.4.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.4, 4.4-debian, 4.4-debian13, 4.4.2, 4.4.2-debian, 4.4.2-debian13

Index digest:

sha256:369e2d899b957e44384c6a82b524cee4bf7ea7ac398f8f75c36aff027fe8e110

Manifest digest:

sha256:9fb6a707241a8716275d8d5eac3a4fd7b4f7f3a851296e5f448fb6b1287591f7

Size

47.15 MB

Last pushed

1 day ago

Vulnerabilities

2
4
1
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jupyterhub-k8s-hub:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jupyterhub-k8s-hub:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jupyterhub-k8s-hub@sha256:e2175dd97dfd21861e38459b27882e0ba0a9789ced8149020be17007d85c943d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jupyterhub-k8s-hub@sha256:bb8522dec56310af5b2a256038f845cb79aaac11babb284f37029be6605dbdf9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jupyterhub-k8s-hub@sha256:a5863698b1a0ed56a1666b64c0e2286d1837796735c4dfa55b13733ae487f08c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jupyterhub-k8s-hub@sha256:26920a47e7723ca058f839a1e1e4f4de6664fb1ebdebdd8f69bc222789f9f217
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jupyterhub-k8s-hub@sha256:775533444bc49dea3ca7dea626c693be66161b048b111c21718da568742cd256
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jupyterhub-k8s-hub@sha256:c52e98388e7babc6f82905e8cb11e2b823ba343fa8434ffc0bc8128b94a580e9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jupyterhub-k8s-hub@sha256:d6c15023067449227bd0c43029f0b162728eda892d234b641c4a5d4e3ef79f33
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jupyterhub-k8s-hub@sha256:e91be637408e49d5c48446a4981c1e456ac9ada41334ba91a2c9873572eb0224
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jupyterhub-k8s-hub@sha256:9b7d0791ede0d4de6461b9244238e3a695f9bc40474788c6738364e4894fbd4c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jupyterhub-k8s-hub@sha256:6007133a49ce3fc330a1db921753a9786fcdf09036f31f9ca76dda943ba64fff
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jupyterhub-k8s-hub@sha256:4133fb675183848fa104c100c5c222f4be1abb8c1ef09ec20f453506b9f5bb69
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jupyterhub-k8s-hub@sha256:34b3c2d58e18193399b2bbcd5ecb7a74cb2e2d929ca3e0ee44eb433447187627
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jupyterhub-k8s-hub@sha256:acafe7b598e067d633d7527a54ebc1d848f399df7e581c049444037d09d69c91
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jupyterhub-k8s-hub@sha256:36c8f77d0742b1a73ffd70e4792f40b83393e7be00c6f739270420087dd4a046
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jupyterhub-k8s-hub@sha256:aab93f6a3c94d00ca3954c900c4727bd9593decaa18551112d20e16bd6ad1ab9