Sign inSign up
OpenCost UI

dhi.io/opencost-ui

OpenCost UI 1.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.121-debian-fips-dev, 1.121-debian13-fips-dev, 1.121-fips-dev, 1.121.2-debian-fips-dev, 1.121.2-debian13-fips-dev, 1.121.2-fips-dev

Index digest:

sha256:0d50d26880fea784558bd4e61caeb33f0930980456864a3997d8d07e652fff7a

Manifest digest:

sha256:284ae563c63cb3288dbed00942dc2d03d11642a8443bae57ff576718acf6ee2f

Size

29.09 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/opencost-ui:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/opencost-ui:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/opencost-ui@sha256:e9cd1ce76df4238e28653cda71b53acede5ad0155aa7320db334ecf0b33dec57
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/opencost-ui@sha256:6be5a850de245cbfa3ebdf7b9b2b16c89c913e4bb87365c6a34ba86fd2b35948
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/opencost-ui@sha256:cc998d21abcb731e176480d28e435a5fb1e681cdb68c6c332d3badaa8898b9ba
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/opencost-ui@sha256:93cec7ee66e68b458d42dfdd4f30c9e38719ae3c1c012a8a2b5b5a64960c9d67
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/opencost-ui@sha256:56532bc640aeda346777b4c4e9a410c70078f1a548b43e37d76eb126fb654bdd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/opencost-ui@sha256:f2b8f013cd32458677e744de44780822fe0c9fe674e5e29e42afb0de5435fc57
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/opencost-ui@sha256:5fb3fb6c18a5845df2f8df9917a4d84d1ee2ea4f92a18950d1a4c5086aa56759
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/opencost-ui@sha256:82517e0bdd6004a971d5c679f8576a9145e955e2bdf0fba7fd1789201e54d1fc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/opencost-ui@sha256:0d5b6a9650720997a5530e60e964d780fa3d632420d9cf2013d22d6d69a77145
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/opencost-ui@sha256:d00776ae3f4a4be5a299e9f1a75e04a46c28b6c778db4b9ba0e0f550f9d4b2c7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/opencost-ui@sha256:27c4cb92a2c45155978791106c9dacbee71b5efd631ca55a8894f2839c99f7a4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/opencost-ui@sha256:c4bed7d054f0c317ff3a62b3e102a7ca876c3659d11768b9d34d4ad10709eb74
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/opencost-ui@sha256:582c89caf045bd0202b15842a348dc141f292e200cab02d32a35f2fd4919a6c7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/opencost-ui@sha256:68cbee1821d504563f1c63063e46a07b80e2bbfb6c13834609daac7945363a2f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/opencost-ui@sha256:1d706c52b4f3c9f5c7d9c82aa93eef2e3a57c644c3f113a98b0c2053e5b42f41
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/opencost-ui@sha256:78fba6b0ae22a7358cb2a2fd53aa1663882ff581cc76679052ef1203111a38d6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/opencost-ui@sha256:1137c3fe914322ef32bc82aa9d6a8405b56f297d68020fc03ff3a1d9940a3f0a