Sign inSign up
JupyterHub

dhi.io/jupyterhub

JupyterHub 5.5.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips-dev, 5-debian13-fips-dev, 5-fips-dev, 5.5-debian-fips-dev, 5.5-debian13-fips-dev, 5.5-fips-dev, 5.5.2-debian-fips-dev, 5.5.2-debian13-fips-dev, 5.5.2-fips-dev

Index digest:

sha256:fbac79bf3ff536e182c0b38620d71b7d7aaa05b5f8cb230ef926dfece9a02250

Manifest digest:

sha256:8bf2d43b98805d9df617d188c74d8d18b938ec076337d486085cf69bbfec8f55

Size

84.74 MB

Last pushed

23 hours ago

Vulnerabilities

0
0
2
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jupyterhub:5-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jupyterhub:5-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jupyterhub@sha256:bb63c583906621936b83aaca47f0a684e9dfbf3bdfa31d332db201d4a58bbc9e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jupyterhub@sha256:d8520be7004bacfe8c1fc2a505c6e523e154912768315c10158ecb8dc50e42a8
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/jupyterhub@sha256:0201d1824aa05c5d6b51f32ed259a3ad9d7b4ddd898ed036bb327a1dd48c97e9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jupyterhub@sha256:efe1960cec750914877d5245adfa1f45ea789c67a51496c2fdd5e5229f353fb3
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/jupyterhub@sha256:3979c7fd0c5175a983948646b9ae808cb057fd52fa77af0667d304c0a23361ad
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jupyterhub@sha256:6cd2acb1314534e75aab4f50b9dbe76e6f8aa2e38bef912386aa51fa6689bed2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jupyterhub@sha256:752a4dfd6bab25dfdf62a9c3c443ab7e97dfd253cbb7c643ef9c45805749ca8b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jupyterhub@sha256:8e3bdc9d8d3d4eb4abafa030cd6fcf3e789ced80bc2d92f91a30a17d7821d465
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jupyterhub@sha256:c9b2686472caf98bd2d6dbad4f3a843c1fa9162d4338b78faaff0115a42c6664
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jupyterhub@sha256:0dd4e5b10797249621e9f283b97d07109f4f6caa47f8ad0f9de7ea80635a415c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jupyterhub@sha256:0d10759c59a062267a283058c56096339ce14c767dfd29a8ad2580ab42b6cdc7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jupyterhub@sha256:8d360d582639750c25bed23a9af37fa622c43dba4cf7d2874a0ecd94e4894be6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jupyterhub@sha256:0dce2ecce684495796ed28a847d6bfd46d1774334656b603ac533ea9d9c461c6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jupyterhub@sha256:5f4734d05863dac9ded11d7033e389fd02c0002f6d55a71ce696756c3362a629
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jupyterhub@sha256:8eb03477a5f780fec9639db9b16369a4e1734bdec930aca4ba8e51add6fcb986
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jupyterhub@sha256:1ed28625a2d2fb351bfa33819dc97f12d88edeffc547144cd378a92c6edecc65
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jupyterhub@sha256:1ca22df5c9cae16efaecc8c8d90ccd0a80aa4e6eb95490933a706f744ffbabb4