Sign inSign up
Supabase Studio

dhi.io/supabase-studio

Supabase Studio 2026.x (dev)

CIS
linux/amd64
debian 13
Tags:

2026-debian-dev, 2026-debian13-dev, 2026-dev, 2026.09-debian-dev, 2026.09-debian13-dev, 2026.09-dev, 2026.09.07-debian-dev, 2026.09.07-debian13-dev, 2026.09.07-dev

Index digest:

sha256:e0675d731ecfb55ec675d2ba5aec7f577d248f0f0c63459d8b2d664ce5c8b0d5

Manifest digest:

sha256:d3320e186944a650c07bead373adaf8f02aa6ab4670d3978c147897a5d1b7d7a

Size

104.90 MB

Last pushed

1 day ago

Vulnerabilities

1
3
2
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/supabase-studio:2026-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/supabase-studio:2026-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/supabase-studio@sha256:fdcdb2c5c02a70333b1154235422245079bb0e691c76cad601699d1b4547799f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/supabase-studio@sha256:89aaadbf81eb699cba592ddeeda498a7ad3c78255054cbfe8032442a1f74642c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/supabase-studio@sha256:5cb7ec98002039ab0b710b0708628feeb6b5fb8fbde470ecb02ce4bda5698617
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/supabase-studio@sha256:e18146595ae2dec1edc81f7495447f5288ec863d10c1eade624350c8cc470a2b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/supabase-studio@sha256:9b3522d39eae301eda4f5a09f3f218202193cc18f022ce491e87e3713c05f2fa
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/supabase-studio@sha256:b75119043500296d11da9a75ed3061fb1b9532f200ef5aaf112dfa739092f25c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/supabase-studio@sha256:9c1b3a463881cb5db1e4e1df4829fe11b77997c0ed976614de982c42b7264ac8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/supabase-studio@sha256:5483a0d5ec9d411fdcf7fac71532b78847f5cfe63e333e436c04f4eb12a14b2a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/supabase-studio@sha256:42e293341349e97023f18b3d8b2c4b16962a5be8563dbcaf653c538eafd74eb4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/supabase-studio@sha256:57b7863264fcc123c8264eaad2b4af24e0a260c9d9968e53a022044c4d0a40df
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/supabase-studio@sha256:272132f99647c016a5ebe4a66bec849fbc32ecedd082f50fb36b7f3da353ce97
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/supabase-studio@sha256:304d2dfff665f53f35b327f2a05eca76bd7fc99763ef128d5a246e975c588cd5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/supabase-studio@sha256:256247fccc387e35cafd55065f925461ac0b8466120ce3a0b688583fa3d08a6e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/supabase-studio@sha256:39cffb12dc8678f6e32653912b96451bec5ec7bad65d337613c7603cf4e967b4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/supabase-studio@sha256:32666ea50330cf466762daebe3bcdb185a113cbd86495c031fe1b6deca0c0655