Sign inSign up
JupyterHub K8s Image Awaiter

dhi.io/jupyterhub-k8s-image-awaiter

JupyterHub K8s Image Awaiter 4.x (dev)

CIS
linux/amd64
debian 13
Tags:

4-debian-dev, 4-debian13-dev, 4-dev, 4.4-debian-dev, 4.4-debian13-dev, 4.4-dev, 4.4.2-debian-dev, 4.4.2-debian13-dev, 4.4.2-dev

Index digest:

sha256:ce5f11227a75ec6cfc5930188337b6be31a05d2b52036c5ccac408f58f1fe1a5

Manifest digest:

sha256:a50e8ec4cf53f1211e6c1de5be328933edff4390191c2b7f194db632f4f4ec97

Size

27.85 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jupyterhub-k8s-image-awaiter:4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jupyterhub-k8s-image-awaiter:4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jupyterhub-k8s-image-awaiter@sha256:86e4d5392bd3984a2a2bfe0cd6941849fc151995a17a7414d71107a30a5801dc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:b57e5db3d0bc3c06b1c7559691b40e3d2b38a802ac1f74348d727c5eb849261d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:41d72789120cc58a3c3b57b0c72086ab4288fa2bbccc16784725f2143dbbf72c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jupyterhub-k8s-image-awaiter@sha256:86598a3fe840e73321c3f4a840fc55180d9a91c2d00422ceba577eceece1c0cd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jupyterhub-k8s-image-awaiter@sha256:45b3368a49d7f47c4c02389f7ff792cbc429b49caf7964309210ba6357bd574c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:925606f3927c91d93ba7312c3d726a49092698ffed530d992c52528244283334
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:68164bc39b8b2f57607ba308a01885ef22d13af1125a28276231afca6b41f686
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:638878c1f3673004682d9fa68e698488e90a047c201b2522f68ccacd14d36a4f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:01574bba066f213cb20fe3e4a07cfb39c4ba04dbe7db1a1f23f781e64afcd2ef
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:ba9e82aaf2634b522d719a22e9d124792786652f68b276f4c49090dda5b51730
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jupyterhub-k8s-image-awaiter@sha256:4d26d41d2a53ea5ab4336fdf4fed04e8f2e5682640bdb1882ee3d2bcc899a023
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jupyterhub-k8s-image-awaiter@sha256:2ece186a28f7de1faba9ccaf39d0fadaa21b9336a7d0ff6c1389dee1961433d3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jupyterhub-k8s-image-awaiter@sha256:3e634bde7f8b882cbee27c533ee3fa18500f5f3b3fe0e2fc879521414a20441b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jupyterhub-k8s-image-awaiter@sha256:65d5dd158796f31d4b4d79800a64d2e4d3d084c1324325c0f498a134d4b237ac
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jupyterhub-k8s-image-awaiter@sha256:0d9ed12423e8c91902e787c3da1800381a876f7fd5c954b1aefaa6cd7d2cbe7c