Sign inSign up
JupyterHub K8s Singleuser Sample

dhi.io/jupyterhub-k8s-singleuser-sample

JupyterHub K8s Singleuser Sample 4.x (compat, fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

4-compat-fips, 4-debian-compat-fips, 4-debian13-compat-fips, 4.4-compat-fips, 4.4-debian-compat-fips, 4.4-debian13-compat-fips, 4.4.2-compat-fips, 4.4.2-debian-compat-fips, 4.4.2-debian13-compat-fips

Index digest:

sha256:deee1ec2bef6f0f240b33ec335d6b9ab342d79ab423836ba3a6774441da1e4df

Manifest digest:

sha256:c1b4f1c603b5159a0da6a177976a3d8f210bb5d661caec4be97ee889efd870b2

Size

106.21 MB

Last pushed

4 hours ago

Vulnerabilities

2
11
12
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jupyterhub-k8s-singleuser-sample:4-compat-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jupyterhub-k8s-singleuser-sample:4-compat-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jupyterhub-k8s-singleuser-sample@sha256:8551e6268e87f16bfb1e7262fdbde89796a330e7580def5a4919b100ae1e488f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:37e21523ef135be4c56ddf0397623d043f549374f72a56b66fabd00f1b4f96d1
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:9f74033f8fe6cbffd531618eab14bac3aa3460f595c4607f74f948307bf577ce
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:91c45f36c989255a572bc5d039893d1bad7a613d6eca7db7557e10b76dc3a1b3
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:7895c2a0d34944ec07fc66fc4bcd999f7fb118c3f9517b4a70e7a49e0d1f6782
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jupyterhub-k8s-singleuser-sample@sha256:e3effa2a687f2f7d9ec31290c79e378859037ffb4723a992b26e0db5aff0bc23
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jupyterhub-k8s-singleuser-sample@sha256:405f1e305b4f57e3ea94250a1f53932475551aad4dcd94343643e8a33161407c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:4f3e523f70dd265f232f09f1792dc3ea4cb97db50c2ade19155ab6de098e49b8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:e0d1995470ca177233911c17150aff17844445a8733b951f37382c86dfca0c16
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:4bd5a36f8141e4ea48c3e9d76a4557cbc5df5f79e73f01ae34c70a7eb79b722d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:49d6e853dfb0fd7063353394fdb4f4475a663d28fda9410c164cfd2e715004f7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:2e1750eacf60e876e412daab9bd4e73c4cbbbf6f38e6f339ddaccbb269053caf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:30782cbd9fe1492bc38f317f79452a4daf251cd1308d4a8a4b0e5d65a5ab5e3a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jupyterhub-k8s-singleuser-sample@sha256:3ee0eb4a1b2cfaeb506a5d4c185da3ea69a0d7ecc214ff4be119e8918645faea
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:a63fc22253fc6b88c76df29da2621e8668900b5cad2966d1ad88130fef1fbc56
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jupyterhub-k8s-singleuser-sample@sha256:9159c7fa331f646d0377e95c889fc5634cef1c3a1b77e470464085d13cf378fc
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jupyterhub-k8s-singleuser-sample@sha256:d05e382cbd71ecfb009d95423996ea546a3b095034834195b4b166e3456cb55d