Sign inSign up
Apache Superset

dhi.io/superset

Apache Superset 6.x (dev)

CIS
linux/amd64
debian 13
Tags:

6-debian-dev, 6-debian13-dev, 6-dev, 6.1-debian-dev, 6.1-debian13-dev, 6.1-dev, 6.1.0-debian-dev, 6.1.0-debian13-dev, 6.1.0-dev

Index digest:

sha256:ba17712b1bbb9a1e9650d0c6b0502f1b276b1a59eb3a40d22acbd7f3afdcf150

Manifest digest:

sha256:68be1999f4ffffdc69782ecffe1a47445f76960375eb69ae899c5517f6e4112d

Size

310.29 MB

Last pushed

7 hours ago

Vulnerabilities

0
3
6
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/superset:6-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/superset:6-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/superset@sha256:9329889e91d05662f2dbfc085cbb6b93cb44e2ef3ca4621a7161373da0d943ca
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/superset@sha256:02855a86fa6d1ac825c038e9fe185e8579600f02531d24e19c032e2b21d09469
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/superset@sha256:2f3ffd6315eff03fa039a12a8bde04991af91f4408bdd49a24704db31b1ac6c4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/superset@sha256:b54155cce3ef8c3f6f98c7a47c087e9d72478d72092d26f79d452999ac61e7a5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/superset@sha256:fffee1d91ee107f6d480e260118891630fd42115767db2e22ea8cdc29444a343
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/superset@sha256:9b3090076ddc964f7cb38ca9ad3bee3f126cb5896c5f8d714e4fe64bf8ca81e7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/superset@sha256:5498b69bceff3755e98ec5e461713f9d1a8760a7c94b7aa17a8ffe974301f1b4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/superset@sha256:c93a43a3b9f1a4052896eb06b92386e5fd2e7f694421917e1173338e50472164
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/superset@sha256:e0af6af7847c0a33f1d6cddea12e2828416dcfbba7b4055e3046919eda55ed5d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/superset@sha256:388d51996747f174b9ad687f4c7defd59304d0ee401ec02bb41c97af89b01602
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/superset@sha256:57c60b55b0ae8d2d16b364cdbfe351bdceb6cb40dc44e6b74c38f7b56f5473e8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/superset@sha256:103eddf0b567d1252dd825367707959e19238cae313a7ad4ff02c637019d15f4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/superset@sha256:d3e85ec1dd8dec5cd27b1daac9bc4c0c59ad75988daafc79a913579366d2afd9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/superset@sha256:3137207f13140770bc24a4d2789c6e7116376a3c7e8a6e6c3ee9ea4693d3a820
SPDX SBOMhttps://spdx.dev/Documentdhi.io/superset@sha256:736f442177ef57c2182fb13a4a2bb2012fa950c28500fc9a7389d5ede10e752b